Show filters
178 Total Results
Displaying 81-90 of 178
Sort by:
Attacker Value
Unknown

CVE-2020-20470

Disclosure Date: June 21, 2021 (last updated February 22, 2025)
White Shark System (WSS) 1.3.2 has web site physical path leakage vulnerability.
Attacker Value
Unknown

CVE-2021-31159

Disclosure Date: June 16, 2021 (last updated February 22, 2025)
Zoho ManageEngine ServiceDesk Plus MSP before 10519 is vulnerable to a User Enumeration bug due to improper error-message generation in the Forgot Password functionality, aka SDPMSP-15732.
Attacker Value
Unknown

CVE-2021-26997

Disclosure Date: June 11, 2021 (last updated February 22, 2025)
E-Series SANtricity OS Controller Software 11.x versions prior to 11.70.1 are susceptible to a vulnerability which when successfully exploited could allow a remote attacker to discover information via error messaging which may aid in crafting more complex attacks.
Attacker Value
Unknown

CVE-2021-30357

Disclosure Date: June 08, 2021 (last updated February 22, 2025)
SSL Network Extender Client for Linux before build 800008302 reveals part of the contents of the configuration file supplied, which allows partially disclosing files to which the user did not have access.
Attacker Value
Unknown

CVE-2021-20371

Disclosure Date: June 01, 2021 (last updated February 22, 2025)
IBM Jazz Foundation and IBM Engineering products could allow a remote attacker to obtain sensitive information when an error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 195516.
Attacker Value
Unknown

CVE-2021-22885

Disclosure Date: May 27, 2021 (last updated February 22, 2025)
A possible information disclosure / unintended method execution vulnerability in Action Pack >= 2.0.0 when using the `redirect_to` or `polymorphic_url`helper with untrusted user input.
Attacker Value
Unknown

CVE-2021-20428

Disclosure Date: May 21, 2021 (last updated February 22, 2025)
IBM Security Guardium 11.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 196315.
Attacker Value
Unknown

CVE-2021-29682

Disclosure Date: May 19, 2021 (last updated February 22, 2025)
IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 199997
Attacker Value
Unknown

CVE-2021-29688

Disclosure Date: May 19, 2021 (last updated February 22, 2025)
IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 200102.
Attacker Value
Unknown

CVE-2021-29040

Disclosure Date: May 16, 2021 (last updated February 22, 2025)
The JSON web services in Liferay Portal 7.3.4 and earlier, and Liferay DXP 7.0 before fix pack 97, 7.1 before fix pack 20 and 7.2 before fix pack 10 may provide overly verbose error messages, which allows remote attackers to use the contents of error messages to help launch another, more focused attacks via crafted inputs.