CWE-668
Exposure of Resource to Wrong Sphere
The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.
719 vulnerabilities with CWE-668
CVE-2022-1637
MEDIUM
Google Chrome < 101.0.4951.64 - Cross-Origin Data Leak via Web Contents
CVSS 4.3
CVE-2022-1501
MEDIUM
Google Chrome < 101.0.4951.41 - Cross-Origin Data Leak via Iframe
CVSS 6.5
CVE-2022-1498
MEDIUM
Google Chrome < 101.0.4951.41 - Cross-Origin Data Leak via HTML Parser
CVSS 4.3
CVE-2022-1488
MEDIUM
Google Chrome < 101.0.4951.41 - Cross-Origin Data Leak via Malicious Extension
CVSS 4.3
CVE-2022-1137
MEDIUM
Google Chrome < 100.0.4896.60 - Information Disclosure via Malicious Extension
CVSS 6.5
CVE-2022-34047
HIGH
Wavlink WN530HG4 M30HG4.V5030.191116 - Info Disclosure
CVSS 7.5
CVE-2022-23825
MEDIUM
AMD Processors - Info Disclosure
CVSS 6.5
CVE-2022-34765
MEDIUM
X80 advanced RTU Communication Module - Path Traversal
CVSS 5.5
CVE-2022-32249
HIGH
SAP Business One - Exposure of Sensitive Information via HANA Cockpit Data Volume
CVSS 7.5
CVE-2022-29901
MEDIUM
Intel Core i7 Firmware - Spectre Retpoline Bypass Exposes Sensitive Information
CVSS 5.6
CVE-2022-33700
LOW
TelephonyUI <SMR Jul-2022 Release 1 - Info Disclosure
CVSS 2.0
CVE-2022-33699
LOW
TelephonyUI <SMR Jul-2022 Release 1 - Info Disclosure
CVSS 2.0
CVE-2022-33698
LOW
Telecom <SMR Jul-2022 Release 1 - Info Disclosure
CVSS 3.3
CVE-2022-33696
MEDIUM
Telephony service <SMR Jul-2022 Release 1 - Info Disclosure
CVSS 4.0
CVE-2022-33694
MEDIUM
CSC <SMR Jul-2022 Release 1 - Info Disclosure
CVSS 4.0
CVE-2022-33692
MEDIUM
Messaging app <SMR Jul-2022 Release 1 - Info Disclosure
CVSS 4.0
CVE-2022-34464
MEDIUM
SICAM GridEdge (Classic) < V2.7.3 - Code Injection
CVSS 6.3
CVE-2022-24139
HIGH
IOBit Advanced System Care 15 - Privilege Escalation
CVSS 7.8
CVE-2022-32530
MEDIUM
Geo SCADA Mobile < 222 - Exposure of Resource to Wrong Sphere via Malicious Application
CVSS 4.8
CVE-2022-28226
HIGH
Yandex Browser < 22.3.3.801 - Local Privilege Escalation via Insecure Temporary File Permissions
CVSS 7.8
CVE-2022-31846
HIGH
WAVLINK WN535 G3 M35G3R.V5030.180927 - Sensitive Information Exposure via live_mfg.shtml exec cmd Function
CVSS 7.5
CVE-2022-31845
HIGH
WAVLINK WN535 G3 M35G3R.V5030.180927 - Information Exposure via live_check.shtml exec cmd Function
CVSS 7.5
CVE-2022-29247
LOW
Electron <18.0.0-beta.6,17.2.0,16.2.6,15.5.5 - Privilege Escalation
CVSS 2.2
CVE-2022-31649
HIGH
owncloud < 10.10.0 - Exposure of Sensitive Information
CVSS 7.5
CVE-2022-30734
MEDIUM
Samsung Account <13.2.00.6 - Info Disclosure
CVSS 4.0
Details
Vulnerabilities
719