Show filters
210 Total Results
Displaying 71-80 of 210
Sort by:
Attacker Value
Unknown
CVE-2021-27913
Disclosure Date: August 30, 2021 (last updated February 23, 2025)
The function mt_rand is used to generate session tokens, this function is cryptographically flawed due to its nature being one pseudorandomness, an attacker can take advantage of the cryptographically insecure nature of this function to enumerate session tokens for accounts that are not under his/her control This issue affects: Mautic Mautic versions prior to 3.3.4; versions prior to 4.0.0.
0
Attacker Value
Unknown
CVE-2021-29723
Disclosure Date: August 27, 2021 (last updated February 23, 2025)
IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-ForceID: 201100.
0
Attacker Value
Unknown
CVE-2021-29722
Disclosure Date: August 27, 2021 (last updated February 23, 2025)
IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 201095.
0
Attacker Value
Unknown
CVE-2021-29704
Disclosure Date: August 19, 2021 (last updated February 23, 2025)
IBM Security SOAR uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
0
Attacker Value
Unknown
CVE-2020-36363
Disclosure Date: August 12, 2021 (last updated February 23, 2025)
Amazon AWS CloudFront TLSv1.2_2019 allows TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 and TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384, which some entities consider to be weak ciphers.
0
Attacker Value
Unknown
CVE-2019-25052
Disclosure Date: August 11, 2021 (last updated February 23, 2025)
In Linaro OP-TEE before 3.7.0, by using inconsistent or malformed data, it is possible to call update and final cryptographic functions directly, causing a crash that could leak sensitive information.
0
Attacker Value
Unknown
CVE-2021-37546
Disclosure Date: August 06, 2021 (last updated February 23, 2025)
In JetBrains TeamCity before 2021.1, an insecure key generation mechanism for encrypted properties was used.
0
Attacker Value
Unknown
CVE-2021-37588
Disclosure Date: July 30, 2021 (last updated February 23, 2025)
In Charm 0.43, any two users can collude to achieve the ability to decrypt YCT14 data.
0
Attacker Value
Unknown
CVE-2021-37587
Disclosure Date: July 30, 2021 (last updated February 23, 2025)
In Charm 0.43, any single user can decrypt DAC-MACS or MA-ABE-YJ14 data.
0
Attacker Value
Unknown
CVE-2021-20337
Disclosure Date: July 23, 2021 (last updated February 23, 2025)
IBM QRadar SIEM 7.3.0 to 7.3.3 Patch 8 and 7.4.0 to 7.4.3 GA uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 194448.
0