Show filters
220 Total Results
Displaying 151-160 of 220
Sort by:
Attacker Value
Unknown
CVE-2020-15219
Disclosure Date: January 13, 2021 (last updated February 22, 2025)
Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, when a download error is triggered in the user portal, an SQL query is displayed to the user. This is fixed in versions 2.7.2 and 3.0.0.
0
Attacker Value
Unknown
CVE-2020-4599
Disclosure Date: January 12, 2021 (last updated February 22, 2025)
IBM Security Guardium Insights 2.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 184824.
0
Attacker Value
Unknown
CVE-2020-4600
Disclosure Date: January 12, 2021 (last updated February 22, 2025)
IBM Security Guardium Insights 2.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 184832.
0
Attacker Value
Unknown
CVE-2020-4487
Disclosure Date: January 07, 2021 (last updated February 22, 2025)
IBM Jazz Foundation Products could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 181862.
0
Attacker Value
Unknown
CVE-2020-4544
Disclosure Date: January 07, 2021 (last updated February 22, 2025)
IBM Jazz Foundation Products could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 183189.
0
Attacker Value
Unknown
CVE-2020-4897
Disclosure Date: January 06, 2021 (last updated February 22, 2025)
IBM Emptoris Contract Management and IBM Emptoris Spend Analysis 10.1.0, 10.1.1, and 10.1.3 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190988.
0
Attacker Value
Unknown
CVE-2020-4761
Disclosure Date: January 04, 2021 (last updated February 22, 2025)
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5_2, 6.0.0.0 through 6.0.3.2, and 6.1.0.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 188895.
0
Attacker Value
Unknown
CVE-2020-2505
Disclosure Date: December 23, 2020 (last updated February 22, 2025)
If exploited, this vulnerability could allow attackers to gain sensitive information via generation of error messages. QNAP has already fixed these issues in QES 2.1.1 Build 20201006 and later.
0
Attacker Value
Unknown
CVE-2020-35177
Disclosure Date: December 17, 2020 (last updated February 22, 2025)
HashiCorp Vault and Vault Enterprise 1.4.1 and newer allowed the enumeration of users via the LDAP auth method. Fixed in 1.5.6 and 1.6.1.
0
Attacker Value
Unknown
CVE-2020-4842
Disclosure Date: December 16, 2020 (last updated February 22, 2025)
IBM Security Secret Server 10.6 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190046.
0