CWE-668

Exposure of Resource to Wrong Sphere

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.

704 vulnerabilities with CWE-668
CVE-2023-23409 MEDIUM
Microsoft Windows 10 1507 < 10.0.10240.19805 - Exposure to Wrong Actor
CVSS 5.5
CVE-2023-23394 MEDIUM
Microsoft Windows 10 1507 < 10.0.10240.19805 - Information Disclosure
CVSS 5.5
CVE-2023-25802 HIGH
Roxy-wi < 6.3.6.0 - Path Traversal
CVSS 7.5
CVE-2023-22892 HIGH
Smartbear Zephyr Enterprise < 7.15 - Exposure to Wrong Actor
CVSS 7.5
CVE-2023-20061 MEDIUM
Cisco Unified Intelligence Center - SSRF
CVSS 6.5
CVE-2023-25536 MEDIUM
Dell Powerscale Onefs < 9.4.0.11 - Information Disclosure
CVSS 6.7
CVE-2023-25544 HIGH
Dell Emc Networker < 19.6 - Information Disclosure
CVSS 7.5
CVE-2023-24567 HIGH
Dell NetWorker <19.5 - Info Disclosure
CVSS 7.5
CVE-2023-22777 MEDIUM
Arubanetworks Sd-wan < 8.7.0.0-2.3.0.8 - Exposure to Wrong Actor
CVSS 4.9
CVE-2023-22775 MEDIUM
Arubanetworks Sd-wan < 8.7.0.0-2.3.0.8 - Exposure to Wrong Actor
CVSS 6.5
CVE-2023-26041 LOW
Nextcloud Talk <15.0.3 - Info Disclosure
CVSS 2.6
CVE-2023-23501 MEDIUM
Apple Macos < 13.2 - Exposure to Wrong Actor
CVSS 5.5
CVE-2023-27265 LOW
Mattermost - Info Disclosure
CVSS 2.7
CVE-2023-0481 LOW
Quarkus - Info Disclosure
CVSS 3.3
CVE-2023-26081 HIGH
Epiphany <43.0 - Info Disclosure
CVSS 7.5
CVE-2023-25192 MEDIUM
AMI Megarac Sp-x - Exposure to Wrong Actor
CVSS 5.3
CVE-2023-21714 MEDIUM
Microsoft Office - Info Disclosure
CVSS 5.5
CVE-2023-21687 MEDIUM
Microsoft Windows HTTP.sys - Information Disclosure
CVSS 5.5
CVE-2023-24523 HIGH
SAP Host Agent <7.22 - Privilege Escalation
CVSS 8.8
CVE-2023-21447 MEDIUM
Samsung Cloud < 5.3.0.32 - Improper Access Control
CVSS 4.0
CVE-2023-21445 MEDIUM
Samsung Android - Improper Access Control
CVSS 5.5
CVE-2023-21438 LOW
Samsung Android - Improper Access Control
CVSS 2.1
CVE-2023-21611 HIGH
Adobe Acrobat Reader <22.003.20282 - Privilege Escalation
CVSS 7.8
CVE-2023-22497 MEDIUM
Netdata < 1.37.0 - Exposure to Wrong Actor
CVSS 6.5
CVE-2023-21536 MEDIUM
Event Tracing for Windows - Info Disclosure
CVSS 4.7
Details
Vulnerabilities 704