Show filters
66 Total Results
Displaying 11-20 of 66
Sort by:
Attacker Value
Unknown

CVE-2023-43256

Disclosure Date: September 25, 2023 (last updated February 25, 2025)
A path traversal in Gladys Assistant v4.26.1 and below allows authenticated attackers to extract sensitive files in the host machine by exploiting a non-sanitized user input.
Attacker Value
Unknown

CVE-2023-32673

Disclosure Date: June 12, 2023 (last updated October 08, 2023)
Certain versions of HP PC Hardware Diagnostics Windows, HP Image Assistant, and HP Thunderbolt Dock G2 Firmware are potentially vulnerable to elevation of privilege.
Attacker Value
Unknown

CVE-2021-38868

Disclosure Date: July 15, 2022 (last updated February 24, 2025)
IBM Engineering Requirements Quality Assistant On-Premises (All versions) is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force Id: 208310.
Attacker Value
Unknown

CVE-2021-29799

Disclosure Date: July 15, 2022 (last updated February 24, 2025)
IBM Engineering Requirements Quality Assistant On-Premises (All versions) could allow an authenticated user to obtain sensitive information due to improper client side validation. IBM X-Force ID: 203738.
Attacker Value
Unknown

CVE-2021-29790

Disclosure Date: July 15, 2022 (last updated February 24, 2025)
IBM Engineering Requirements Quality Assistant On-Premises (All versions) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 203440.
Attacker Value
Unknown

CVE-2021-29788

Disclosure Date: July 15, 2022 (last updated February 24, 2025)
IBM Engineering Requirements Quality Assistant On-Premises (All versions) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 203310.
Attacker Value
Unknown

CVE-2022-24543

Disclosure Date: April 15, 2022 (last updated November 29, 2024)
Windows Upgrade Assistant Remote Code Execution Vulnerability
0
Attacker Value
Unknown

CVE-2021-29899

Disclosure Date: March 17, 2022 (last updated October 07, 2023)
IBM Engineering Requirements Quality Assistant prior to 3.1.3 could allow an authenticated user to cause a denial of service. IBM X-Force ID: 207413.
Attacker Value
Unknown

CVE-2022-22289

Disclosure Date: January 10, 2022 (last updated February 23, 2025)
Improper access control vulnerability in S Assistant prior to version 7.5 allows attacker to remotely get senstive information.
Attacker Value
Unknown

CVE-2021-43211

Disclosure Date: November 24, 2021 (last updated February 23, 2025)
Windows 10 Update Assistant Elevation of Privilege Vulnerability
0