Show filters
277 Total Results
Displaying 21-30 of 277
Sort by:
Attacker Value
Unknown
CVE-2021-21591
Disclosure Date: July 01, 2021 (last updated February 23, 2025)
Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 contain a plain-text password storage vulnerability. A local malicious user with high privileges may use the exposed password to gain access with the privileges of the compromised user.
0
Attacker Value
Unknown
CVE-2021-21590
Disclosure Date: July 01, 2021 (last updated February 23, 2025)
Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 contain a plain-text password storage vulnerability. A local malicious user with high privileges may use the exposed password to gain access with the privileges of the compromised user.
0
Attacker Value
Unknown
CVE-2021-34075
Disclosure Date: June 30, 2021 (last updated February 22, 2025)
In Artica Pandora FMS <=754 in the File Manager component, there is sensitive information exposed on the client side which attackers can access.
0
Attacker Value
Unknown
CVE-2021-35050
Disclosure Date: June 18, 2021 (last updated February 22, 2025)
User credentials stored in a recoverable format within Fidelis Network and Deception CommandPost. In the event that an attacker gains access to the CommandPost, these values could be decoded and used to login to the application. The vulnerability is present in Fidelis Network and Deception versions prior to 9.3.3. This vulnerability has been addressed in version 9.3.3 and subsequent versions.
0
Attacker Value
Unknown
CVE-2021-34204
Disclosure Date: June 16, 2021 (last updated February 22, 2025)
D-Link DIR-2640-US 1.01B04 is affected by Insufficiently Protected Credentials. D-Link AC2600(DIR-2640) stores the device system account password in plain text. It does not use linux user management. In addition, the passwords of all devices are the same, and they cannot be modified by normal users. An attacker can easily log in to the target router through the serial port and obtain root privileges.
0
Attacker Value
Unknown
CVE-2021-28857
Disclosure Date: June 15, 2021 (last updated February 22, 2025)
TP-Link's TL-WPA4220 4.0.2 Build 20180308 Rel.37064 username and password are sent via the cookie.
0
Attacker Value
Unknown
CVE-2020-15381
Disclosure Date: June 09, 2021 (last updated February 22, 2025)
Brocade SANnav before version 2.1.1 contains an Improper Authentication vulnerability that allows cleartext transmission of authentication credentials of the jmx server.
0
Attacker Value
Unknown
CVE-2020-26515
Disclosure Date: June 08, 2021 (last updated February 22, 2025)
An insufficiently protected credentials issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. The remember-me cookie (CB_LOGIN) issued by the application contains the encrypted user's credentials. However, due to a bug in the application code, those credentials are encrypted using a NULL encryption key.
0
Attacker Value
Unknown
CVE-2020-29323
Disclosure Date: June 04, 2021 (last updated February 22, 2025)
The D-link router DIR-885L-MFC 1.15b02, v1.21b05 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthenticated attacker to gain access to the firmware and to extract sensitive data.
0
Attacker Value
Unknown
CVE-2020-29322
Disclosure Date: June 04, 2021 (last updated February 22, 2025)
The D-Link router DIR-880L 1.07 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthenticated attacker to gain access to the firmware and to extract sensitive data.
0