CWE-668

Exposure of Resource to Wrong Sphere

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.

704 vulnerabilities with CWE-668
CVE-2023-35696 HIGH
Sick Icr890-4 Firmware < 2.5.0 - Exposure to Wrong Actor
CVSS 7.5
CVE-2023-3456 MEDIUM
Huawei Emui - Exposure to Wrong Actor
CVSS 5.3
CVE-2023-3455 CRITICAL
Huawei Emui - Information Disclosure
CVSS 9.1
CVE-2023-32613 HIGH
Wavlink Wl-wn531ax2 Firmware < 2023526 - Exposure to Wrong Actor
CVSS 8.1
CVE-2023-32394 LOW
Apple Ipados < 16.5 - Exposure to Wrong Actor
CVSS 2.4
CVE-2023-35151 HIGH
Xwiki < 14.4.8 - Exposure to Wrong Actor
CVSS 7.5
CVE-2023-34467 HIGH
XWiki Platform <14.4.8-15.0-rc-1 - Info Disclosure
CVSS 7.5
CVE-2023-2820 MEDIUM
Proofpoint Threat Response <5.10.0 - Info Disclosure
CVSS 6.1
CVE-2023-32019 MEDIUM
Windows Kernel - Info Disclosure
CVSS 4.7
CVE-2023-29355 MEDIUM
DHCP Server - Info Disclosure
CVSS 5.3
CVE-2023-34250 MEDIUM
Discourse < 3.0.4 - Information Disclosure
CVSS 4.8
CVE-2023-34114 HIGH
Zoom <5.14.10 - Info Disclosure
CVSS 7.4
CVE-2023-29403 HIGH
GO < 1.19.10 - Exposure to Wrong Actor
CVSS 7.8
CVE-2023-33510 HIGH
Jeecg P3 Biz Chat <1.0.5 - Info Disclosure
CVSS 7.5
CVE-2023-32550 CRITICAL
Canonical Landscape < 19.10.5 - Exposure to Wrong Actor
CVSS 9.3
CVE-2023-33518 MEDIUM
emoncms <11 - Info Disclosure
CVSS 5.3
CVE-2023-29538 MEDIUM
Mozilla Firefox < 112.0 - Exposure to Wrong Actor
CVSS 4.3
CVE-2023-25750 MEDIUM
Mozilla Firefox < 111.0 - Path Traversal
CVSS 4.3
CVE-2023-2062 MEDIUM
Mitsubishielectric Fx5-enet/ip Firmware - Exposure to Wrong Actor
CVSS 6.2
CVE-2023-28344 HIGH
Faronics Insight - Path Traversal
CVSS 7.1
CVE-2023-2703 HIGH
Finexmedia Competition Management System - Exposure to Wrong Actor
CVSS 7.5
CVE-2023-33293 MEDIUM
KaiOS 3.0-3.1 - Info Disclosure
CVSS 5.3
CVE-2023-31103 HIGH
Apache InLong <1.6.0 - Privilege Escalation
CVSS 7.5
CVE-2023-31206 HIGH
Apache InLong <1.7.0 - Privilege Escalation
CVSS 7.5
CVE-2023-2025 MEDIUM
Johnsoncontrols Openblue Enterprise M... - Information Disclosure
CVSS 5.0
Details
Vulnerabilities 704