Show filters
55 Total Results
Displaying 21-30 of 55
Sort by:
Attacker Value
Unknown

CVE-2020-4765

Disclosure Date: May 18, 2021 (last updated February 22, 2025)
IBM Cloud Pak for Multicloud Management prior to 2.3 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 188902.
Attacker Value
Unknown

CVE-2021-20391

Disclosure Date: May 13, 2021 (last updated February 22, 2025)
IBM QRadar User Behavior Analytics 1.0.0 through 4.1.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 195999.
Attacker Value
Unknown

CVE-2021-28653

Disclosure Date: March 19, 2021 (last updated February 22, 2025)
The iOS and macOS apps before 1.4.1 for the Western Digital G-Technology ArmorLock NVMe SSD store keys insecurely. They choose a non-preferred storage mechanism if the device has Secure Enclave support but lacks biometric authentication hardware.
Attacker Value
Unknown

CVE-2020-4726

Disclosure Date: February 26, 2021 (last updated February 22, 2025)
The IBM Application Performance Monitoring UI (IBM Cloud APM 8.1.4) allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 187975.
Attacker Value
Unknown

CVE-2021-27170

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. By default, there are no firewall rules for IPv6 connectivity, exposing the internal management interfaces to the Internet.
Attacker Value
Unknown

CVE-2021-25776

Disclosure Date: February 03, 2021 (last updated February 22, 2025)
In JetBrains TeamCity before 2020.2, an ECR token could be exposed in a build's parameters.
Attacker Value
Unknown

CVE-2020-29603

Disclosure Date: January 29, 2021 (last updated February 22, 2025)
In manage_proj_edit_page.php in MantisBT before 2.24.4, any unprivileged logged-in user can retrieve Private Projects' names via the manage_proj_edit_page.php project_id parameter, without having access to them.
Attacker Value
Unknown

CVE-2020-4871

Disclosure Date: January 18, 2021 (last updated February 22, 2025)
IBM Planning Analytics 2.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 190834.
Attacker Value
Unknown

CVE-2020-4674

Disclosure Date: January 11, 2021 (last updated February 22, 2025)
IBM Workload Automation 9.5 stores the server path in URLs that could aid in further attacks against the system. IBM X-Force ID: 186287.
Attacker Value
Unknown

CVE-2020-4673

Disclosure Date: January 11, 2021 (last updated February 22, 2025)
IBM Workload Automation 9.5 stores sensitive information in HTML comments that could aid in further attacks against the system. IBM X-Force ID: 186286.