Show filters
425 Total Results
Displaying 361-370 of 425
Sort by:
Attacker Value
Unknown
CVE-2021-42371
Disclosure Date: November 08, 2021 (last updated February 23, 2025)
lpar2rrd is a hardcoded system account in XoruX LPAR2RRD and STOR2RRD before 7.30.
0
Attacker Value
Unknown
CVE-2021-34793
Disclosure Date: October 27, 2021 (last updated February 23, 2025)
A vulnerability in the TCP Normalizer of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software operating in transparent mode could allow an unauthenticated, remote attacker to poison MAC address tables, resulting in a denial of service (DoS) vulnerability. This vulnerability is due to incorrect handling of certain TCP segments when the affected device is operating in transparent mode. An attacker could exploit this vulnerability by sending a crafted TCP segment through an affected device. A successful exploit could allow the attacker to poison the MAC address tables in adjacent devices, resulting in network disruption.
0
Attacker Value
Unknown
CVE-2021-41034
Disclosure Date: September 29, 2021 (last updated February 23, 2025)
The build of some language stacks of Eclipse Che version 6 includes pulling some binaries from an unsecured HTTP endpoint. As a consequence the builds of such stacks are vulnerable to MITM attacks that allow the replacement of the original binaries with arbitrary ones. The stacks involved are Java 8 (alpine and centos), Android and PHP. The vulnerability is not exploitable at runtime but only when building Che.
0
Attacker Value
Unknown
CVE-2020-4809
Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 189633.
0
Attacker Value
Unknown
CVE-2020-4805
Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 189539.
0
Attacker Value
Unknown
CVE-2020-4803
Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 189535.
0
Attacker Value
Unknown
CVE-2021-28813
Disclosure Date: September 09, 2021 (last updated February 23, 2025)
A vulnerability involving insecure storage of sensitive information has been reported to affect QSW-M2116P-2T2S and QNAP switches running QuNetSwitch. If exploited, this vulnerability allows remote attackers to read sensitive information by accessing the unrestricted storage mechanism.We have already fixed this vulnerability in the following versions: QSW-M2116P-2T2S 1.0.6 build 210713 and later QGD-1600P: QuNetSwitch 1.0.6.1509 and later QGD-1602P: QuNetSwitch 1.0.6.1509 and later QGD-3014PT: QuNetSwitch 1.0.6.1519 and later
0
Attacker Value
Unknown
CVE-2021-0639
Disclosure Date: August 17, 2021 (last updated February 23, 2025)
In multiple functions of libl3oemcrypto.cpp, there is a possible weakness in the existing obfuscation mechanism due to the way sensitive data is handled. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-190724551
0
Attacker Value
Unknown
CVE-2021-36786
Disclosure Date: August 13, 2021 (last updated February 23, 2025)
The miniorange_saml (aka Miniorange Saml) extension before 1.4.3 for TYPO3 allows Sensitive Data Exposure of API credentials and private keys.
0
Attacker Value
Unknown
CVE-2021-36127
Disclosure Date: July 02, 2021 (last updated February 22, 2025)
An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. The Special:GlobalUserRights page provided search results which, for a suppressed MediaWiki user, were different than for any other user, thus easily disclosing suppressed accounts (which are supposed to be completely hidden).
0