Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2021-43177

Disclosure Date: April 11, 2022 (last updated February 23, 2025)
As a result of an incomplete fix for CVE-2015-7225, in versions of devise-two-factor prior to 4.0.2 it is possible to reuse a One-Time-Password (OTP) for one (and only one) immediately trailing interval. CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N)
Attacker Value
Unknown

CVE-2021-40006

Disclosure Date: January 10, 2022 (last updated February 23, 2025)
Vulnerability of design defects in the security algorithm component. Successful exploitation of this vulnerability may affect confidentiality.
Attacker Value
Unknown

CVE-2002-0493

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Apache Tomcat may be started without proper security settings if errors are encountered while reading the web.xml file, which could allow attackers to bypass intended restrictions.
0
Attacker Value
Unknown

CVE-2000-0277

Disclosure Date: April 03, 2000 (last updated February 22, 2025)
Microsoft Excel 97 and 2000 does not warn the user when executing Excel Macro Language (XLM) macros in external text files, which could allow an attacker to execute a macro virus, aka the "XLM Text Macro" vulnerability.
0