Show filters
56 Total Results
Displaying 31-40 of 56
Sort by:
Attacker Value
Unknown
CVE-2020-4673
Disclosure Date: January 11, 2021 (last updated February 22, 2025)
IBM Workload Automation 9.5 stores sensitive information in HTML comments that could aid in further attacks against the system. IBM X-Force ID: 186286.
0
Attacker Value
Unknown
CVE-2020-9202
Disclosure Date: December 24, 2020 (last updated February 22, 2025)
There is an information disclosure vulnerability in TE Mobile software versions V600R006C10,V600R006C10SPC100. Due to the improper storage of some information in certain specific scenario, the attacker can gain information in the victim's device to launch the attack, successful exploit could cause information disclosure.
0
Attacker Value
Unknown
CVE-2020-26176
Disclosure Date: December 18, 2020 (last updated February 22, 2025)
An issue was discovered in tangro Business Workflow before 1.18.1. No (or broken) access control checks exist on the /api/document/<DocumentID>/attachments API endpoint. Knowing a document ID, an attacker can list all the attachments of a workitem, including their respective IDs. This allows the attacker to gather valid attachment IDs for workitems that do not belong to them.
0
Attacker Value
Unknown
CVE-2020-4906
Disclosure Date: December 15, 2020 (last updated February 22, 2025)
IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4 allows web pages to be stored locally which can be read by another user on the system.
0
Attacker Value
Unknown
CVE-2019-19557
Disclosure Date: November 16, 2020 (last updated February 22, 2025)
A misconfiguration in the debug interface in Mercedes-Benz HERMES 1 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
0
Attacker Value
Unknown
CVE-2019-19561
Disclosure Date: November 16, 2020 (last updated February 22, 2025)
A misconfiguration in the debug interface in Mercedes-Benz HERMES 1.5 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
0
Attacker Value
Unknown
CVE-2020-4886
Disclosure Date: November 12, 2020 (last updated February 22, 2025)
IBM InfoSphere Information Server 11.7 stores sensitive information in the browser's history that could be obtained by a user who has access to the same system. IBM X-Force ID: 190910.
0
Attacker Value
Unknown
CVE-2020-4650
Disclosure Date: November 06, 2020 (last updated February 22, 2025)
IBM Maximo Spatial Asset Management 7.6.0.3, 7.6.0.4, 7.6.0.5, and 7.6.1.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 186023.
0
Attacker Value
Unknown
CVE-2019-8790
Disclosure Date: October 27, 2020 (last updated February 22, 2025)
This issue was addresses by updating incorrect URLSession file descriptors management logic to match Swift 5.0. This issue is fixed in Swift 5.1.1 for Ubuntu. Incorrect management of file descriptors in URLSession could lead to inadvertent data disclosure.
0
Attacker Value
Unknown
CVE-2020-13937
Disclosure Date: October 19, 2020 (last updated February 22, 2025)
Apache Kylin 2.0.0, 2.1.0, 2.2.0, 2.3.0, 2.3.1, 2.3.2, 2.4.0, 2.4.1, 2.5.0, 2.5.1, 2.5.2, 2.6.0, 2.6.1, 2.6.2, 2.6.3, 2.6.4, 2.6.5, 2.6.6, 3.0.0-alpha, 3.0.0-alpha2, 3.0.0-beta, 3.0.0, 3.0.1, 3.0.2, 3.1.0, 4.0.0-alpha has one restful api which exposed Kylin's configuration information without any authentication, so it is dangerous because some confidential information entries will be disclosed to everyone.
0