Show filters
391 Total Results
Displaying 111-120 of 391
Sort by:
Attacker Value
Unknown

CVE-2021-46434

Disclosure Date: March 28, 2022 (last updated November 08, 2023)
EMQ X Dashboard V3.0.0 is affected by username enumeration in the "/api /v3/auth" interface. When a user login, the application returns different results depending on whether the account is correct, that allowed an attacker to determine if a given username was valid
Attacker Value
Unknown

CVE-2022-22316

Disclosure Date: March 18, 2022 (last updated October 07, 2023)
IBM MQ Appliance 9.2 CD and 9.2 LTS could allow an authenticated and authorized user to cause a denial of service due to incorrectly configured authorization checks. IBM X-Force ID: 218276.
Attacker Value
Unknown

CVE-2022-22321

Disclosure Date: February 28, 2022 (last updated February 23, 2025)
IBM MQ Appliance 9.2 CD and 9.2 LTS local messaging users stored with a password hash that provides insufficient protection. IBM X-Force ID: 218368.
Attacker Value
Unknown

CVE-2021-38986

Disclosure Date: February 28, 2022 (last updated February 23, 2025)
IBM MQ Appliance 9.2 CD and 9.2 LTS does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 212942.
Attacker Value
Unknown

CVE-2021-39034

Disclosure Date: February 15, 2022 (last updated October 07, 2023)
IBM MQ 9.1 LTS is vulnerable to a denial of service attack caused by an issue within the channel process. IBM X-Force ID: 213964.
Attacker Value
Unknown

CVE-2022-23913

Disclosure Date: February 04, 2022 (last updated February 23, 2025)
In Apache ActiveMQ Artemis prior to 2.20.0 or 2.19.1, an attacker could partially disrupt availability (DoS) through uncontrolled resource consumption of memory.
Attacker Value
Unknown

CVE-2021-45939

Disclosure Date: January 01, 2022 (last updated February 23, 2025)
wolfSSL wolfMQTT 1.9 has a heap-based buffer overflow in MqttClient_DecodePacket (called from MqttClient_WaitType and MqttClient_Subscribe).
Attacker Value
Unknown

CVE-2021-45938

Disclosure Date: January 01, 2022 (last updated February 23, 2025)
wolfSSL wolfMQTT 1.9 has a heap-based buffer overflow in MqttClient_DecodePacket (called from MqttClient_WaitType and MqttClient_Unsubscribe).
Attacker Value
Unknown

CVE-2021-45937

Disclosure Date: January 01, 2022 (last updated February 23, 2025)
wolfSSL wolfMQTT 1.9 has a heap-based buffer overflow in MqttClient_DecodePacket (called from MqttClient_WaitType and MqttClient_Connect).
Attacker Value
Unknown

CVE-2021-45936

Disclosure Date: January 01, 2022 (last updated February 23, 2025)
wolfSSL wolfMQTT 1.9 has a heap-based buffer overflow in MqttDecode_Disconnect (called from MqttClient_DecodePacket and MqttClient_WaitType).