Show filters
52 Total Results
Displaying 41-50 of 52
Sort by:
Attacker Value
Unknown
CVE-2020-12624
Disclosure Date: May 03, 2020 (last updated February 21, 2025)
The League application before 2020-05-02 on Android sends a bearer token in an HTTP Authorization header to an arbitrary web site that hosts an external image because an OkHttp object is reused, which allows remote attackers to hijack sessions.
0
Attacker Value
Unknown
CVE-2020-5961
Disclosure Date: March 12, 2020 (last updated February 21, 2025)
NVIDIA vGPU graphics driver for guest OS contains a vulnerability in which an incorrect resource clean up on a failure path can impact the guest VM, leading to denial of service.
0
Attacker Value
Unknown
CVE-2020-6794
Disclosure Date: March 02, 2020 (last updated February 21, 2025)
If a user saved passwords before Thunderbird 60 and then later set a master password, an unencrypted copy of these passwords is still accessible. This is because the older stored password file was not deleted when the data was copied to a new format starting in Thunderbird 60. The new master password is added only on the new file. This could allow the exposure of stored password data outside of user expectations. This vulnerability affects Thunderbird < 68.5.
0
Attacker Value
Unknown
CVE-2005-2293
Disclosure Date: July 18, 2005 (last updated February 22, 2025)
Oracle Formsbuilder 9.0.4 stores database usernames and passwords in a temporary file, which is not deleted after it is used, which allows local users to obtain sensitive information.
0
Attacker Value
Unknown
CVE-2005-1744
Disclosure Date: May 24, 2005 (last updated February 22, 2025)
BEA WebLogic Server and WebLogic Express 7.0 through Service Pack 5 does not log out users when an application is redeployed, which allows those users to continue to access the application without having to log in again, which may be in violation of newly changed security constraints or role mappings.
0
Attacker Value
Unknown
CVE-2002-2068
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Eraser 5.3 does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted.
0
Attacker Value
Unknown
CVE-2002-2069
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
PGP 6.x and 7.x does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted.
0
Attacker Value
Unknown
CVE-2002-2067
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
East-Tec Eraser 2002 does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted.
0
Attacker Value
Unknown
CVE-2002-2066
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
BestCrypt BCWipe 1.0.7 and 2.0 through 2.35.1 does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted.
0
Attacker Value
Unknown
CVE-2002-2070
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
SecureClean 3 build 2.0 does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted.
0