Skip to main content

CWE archive

CWE-346 CVEs

Programmatic archive

626 CVEs tagged with CWE-34664 Critical, 216 High, 324 Medium, 21 Low, 1 Unrated.

CVE-2023-21260

Published Jul 13, 2023

In notification access permission dialog box, malicious application can embedded a very long service label that overflow the original user prompt and possibly contains mis-leading…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37210

Published Jul 5, 2023

A website could prevent a user from exiting full-screen mode via alert and prompt calls. This could lead to user confusion and possible spoofing attacks. This vulnerability affec…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-32553

Published Jun 26, 2023

An Improper access control vulnerability in Trend Micro Apex One and Apex One as a Service could allow an unauthenticated user under certain circumstances to disclose sensitive in…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-46718

Published Jun 23, 2023

A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.7.2 and iPadOS 15.7.2, macOS Ventura 13.1, macOS Big Sur 11.7.2, macOS Monterey 12.6.2. An ap…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-42860

Published Jun 23, 2023

This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in macOS Monterey 12.6.1, macOS Big Sur 11.7.1, macOS Ventura 13. An app may be…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-29751

Published Jun 9, 2023

An issue found in Yandex Navigator v.6.60 for Android allows unauthorized apps to cause a persistent denial of service by manipulating the SharedPreference files.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-29756

Published Jun 9, 2023

An issue found in Twilight v.13.3 for Android allows unauthorized apps to cause a persistent denial of service by manipulating the SharedPreference files.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-2589

Published Jun 7, 2023

An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10.8, all versions starting from 15.11 before 15.11.7, all versions starting from 16.…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-27745

Published Jun 2, 2023

An issue in South River Technologies TitanFTP Before v2.0.1.2102 allows attackers with low-level privileges to perform Administrative actions by sending requests to the user serve…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-29745

Published May 31, 2023

An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a persistent denial of service attack by manipulating the database.

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2023-28349

Published May 31, 2023

An issue was discovered in Faronics Insight 10.0.19045 on Windows. It is possible for an attacker to create a crafted program that functions similarly to the Teacher Console. This…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-29743

Published May 30, 2023

An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a persistent denial of service attack by manipulating the database.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-29728

Published May 30, 2023

The Call Blocker application 6.6.3 for Android allows attackers to tamper with feature-related data, resulting in a severe elevation of privilege attack.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-33740

Published May 30, 2023

Incorrect access control in luowice v3.5.18 allows attackers to access cloud source code information via modification fo the Verify parameter in a warning message.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-23561

Published May 30, 2023

Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control: authenticated users can read sensitive information.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 376-400 of 626 CVEsPage 16 of 26