Show filters
196 Total Results
Displaying 121-130 of 196
Sort by:
Attacker Value
Unknown

CVE-2021-23135

Disclosure Date: March 15, 2021 (last updated February 22, 2025)
Exposure of System Data to an Unauthorized Control Sphere vulnerability in web UI of Argo CD allows attacker to cause leaked secret data into web UI error messages and logs. This issue affects Argo CD 1.8 versions prior to 1.8.7; 1.7 versions prior to 1.7.14.
Attacker Value
Unknown

CVE-2021-23973

Disclosure Date: February 26, 2021 (last updated February 22, 2025)
When trying to load a cross-origin resource in an audio/video context a decoding error may have resulted, and the content of that error may have revealed information about the resource. This vulnerability affects Firefox < 86, Thunderbird < 78.8, and Firefox ESR < 78.8.
Attacker Value
Unknown

CVE-2021-23968

Disclosure Date: February 26, 2021 (last updated February 22, 2025)
If Content Security Policy blocked frame navigation, the full destination of a redirect served in the frame was reported in the violation report; as opposed to the original frame URI. This could be used to leak sensitive information contained in such URIs. This vulnerability affects Firefox < 86, Thunderbird < 78.8, and Firefox ESR < 78.8.
Attacker Value
Unknown

CVE-2020-1717

Disclosure Date: February 11, 2021 (last updated February 22, 2025)
A flaw was found in Keycloak 7.0.1. A logged in user can do an account email enumeration attack.
Attacker Value
Unknown

CVE-2021-20402

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 196076.
Attacker Value
Unknown

CVE-2020-4628

Disclosure Date: January 26, 2021 (last updated February 22, 2025)
IBM Cloud Pak for Security (CP4S) 1.3.0.1 and 1.4.0.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 185369.
Attacker Value
Unknown

CVE-2020-15219

Disclosure Date: January 13, 2021 (last updated February 22, 2025)
Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, when a download error is triggered in the user portal, an SQL query is displayed to the user. This is fixed in versions 2.7.2 and 3.0.0.
Attacker Value
Unknown

CVE-2020-4599

Disclosure Date: January 12, 2021 (last updated February 22, 2025)
IBM Security Guardium Insights 2.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 184824.
Attacker Value
Unknown

CVE-2020-4600

Disclosure Date: January 12, 2021 (last updated February 22, 2025)
IBM Security Guardium Insights 2.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 184832.
Attacker Value
Unknown

CVE-2020-4487

Disclosure Date: January 07, 2021 (last updated February 22, 2025)
IBM Jazz Foundation Products could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 181862.