Show filters
425 Total Results
Displaying 421-425 of 425
Sort by:
Attacker Value
Unknown

CVE-2020-5262

Disclosure Date: March 19, 2020 (last updated February 21, 2025)
In EasyBuild before version 4.1.2, the GitHub Personal Access Token (PAT) used by EasyBuild for the GitHub integration features (like `--new-pr`, `--fro,-pr`, etc.) is shown in plain text in EasyBuild debug log files. This issue is fixed in EasyBuild v4.1.2, and in the `master`+ `develop` branches of the `easybuild-framework` repository.
Attacker Value
Unknown

CVE-2020-4197

Disclosure Date: March 02, 2020 (last updated February 21, 2025)
IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 174908.
Attacker Value
Unknown

CVE-2018-13313

Disclosure Date: February 24, 2020 (last updated February 21, 2025)
In TOTOLINK A3002RU 1.0.8, the router provides a page that allows the user to change their account name and password. This page, password.htm, contains JavaScript which is used to confirm the user knows their current password before allowing them to change their password. However, this JavaScript contains the current user’s password in plaintext.
Attacker Value
Unknown

CVE-2019-12825

Disclosure Date: February 17, 2020 (last updated February 21, 2025)
Unauthorized Access to the Container Registry of other groups was discovered in GitLab Enterprise 12.0.0-pre. In other words, authenticated remote attackers can read Docker registries of other groups. When a legitimate user changes the path of a group, Docker registries are not adapted, leaving them in the old namespace. They are not protected and are available to all other users with no previous access to the repo.
Attacker Value
Unknown

CVE-2019-20060

Disclosure Date: February 10, 2020 (last updated February 21, 2025)
MFScripts YetiShare v3.5.2 through v4.5.4 places sensitive information in the Referer header. If this leaks, then third parties may discover password-reset hashes, file-delete links, or other sensitive information.