Show filters
187 Total Results
Displaying 111-120 of 187
Sort by:
Attacker Value
Unknown
CVE-2021-22193
Disclosure Date: March 24, 2021 (last updated February 22, 2025)
An issue has been discovered in GitLab affecting all versions starting with 7.1. A member of a private group was able to validate the use of a specific name for private project.
0
Attacker Value
Unknown
CVE-2021-23135
Disclosure Date: March 15, 2021 (last updated February 22, 2025)
Exposure of System Data to an Unauthorized Control Sphere vulnerability in web UI of Argo CD allows attacker to cause leaked secret data into web UI error messages and logs. This issue affects Argo CD 1.8 versions prior to 1.8.7; 1.7 versions prior to 1.7.14.
0
Attacker Value
Unknown
CVE-2021-23973
Disclosure Date: February 26, 2021 (last updated February 22, 2025)
When trying to load a cross-origin resource in an audio/video context a decoding error may have resulted, and the content of that error may have revealed information about the resource. This vulnerability affects Firefox < 86, Thunderbird < 78.8, and Firefox ESR < 78.8.
0
Attacker Value
Unknown
CVE-2021-23968
Disclosure Date: February 26, 2021 (last updated February 22, 2025)
If Content Security Policy blocked frame navigation, the full destination of a redirect served in the frame was reported in the violation report; as opposed to the original frame URI. This could be used to leak sensitive information contained in such URIs. This vulnerability affects Firefox < 86, Thunderbird < 78.8, and Firefox ESR < 78.8.
0
Attacker Value
Unknown
CVE-2020-1717
Disclosure Date: February 11, 2021 (last updated February 22, 2025)
A flaw was found in Keycloak 7.0.1. A logged in user can do an account email enumeration attack.
0
Attacker Value
Unknown
CVE-2021-20402
Disclosure Date: February 10, 2021 (last updated February 22, 2025)
IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 196076.
0
Attacker Value
Unknown
CVE-2020-4628
Disclosure Date: January 26, 2021 (last updated February 22, 2025)
IBM Cloud Pak for Security (CP4S) 1.3.0.1 and 1.4.0.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 185369.
0
Attacker Value
Unknown
CVE-2020-15219
Disclosure Date: January 13, 2021 (last updated February 22, 2025)
Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, when a download error is triggered in the user portal, an SQL query is displayed to the user. This is fixed in versions 2.7.2 and 3.0.0.
0
Attacker Value
Unknown
CVE-2020-4599
Disclosure Date: January 12, 2021 (last updated February 22, 2025)
IBM Security Guardium Insights 2.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 184824.
0
Attacker Value
Unknown
CVE-2020-4600
Disclosure Date: January 12, 2021 (last updated February 22, 2025)
IBM Security Guardium Insights 2.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 184832.
0