Show filters
83 Total Results
Displaying 21-30 of 83
Sort by:
Attacker Value
Unknown

CVE-2022-28758

Disclosure Date: September 13, 2022 (last updated October 08, 2023)
Zoom On-Premise Meeting Connector MMR before version 4.8.20220815.130 contains an improper access control vulnerability. As a result, a malicious actor could obtain the audio and video feed of a meeting they were not authorized to join and cause other meeting disruptions.
Attacker Value
Unknown

CVE-2022-28760

Disclosure Date: September 13, 2022 (last updated October 08, 2023)
Zoom On-Premise Meeting Connector MMR before version 4.8.20220815.130 contains an improper access control vulnerability. As a result, a malicious actor could obtain the audio and video feed of a meeting they were not authorized to join and cause other meeting disruptions.
Attacker Value
Unknown

CVE-2021-38868

Disclosure Date: July 15, 2022 (last updated October 07, 2023)
IBM Engineering Requirements Quality Assistant On-Premises (All versions) is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force Id: 208310.
Attacker Value
Unknown

CVE-2021-29799

Disclosure Date: July 15, 2022 (last updated October 07, 2023)
IBM Engineering Requirements Quality Assistant On-Premises (All versions) could allow an authenticated user to obtain sensitive information due to improper client side validation. IBM X-Force ID: 203738.
Attacker Value
Unknown

CVE-2021-29790

Disclosure Date: July 15, 2022 (last updated October 07, 2023)
IBM Engineering Requirements Quality Assistant On-Premises (All versions) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 203440.
Attacker Value
Unknown

CVE-2021-29788

Disclosure Date: July 15, 2022 (last updated October 07, 2023)
IBM Engineering Requirements Quality Assistant On-Premises (All versions) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 203310.
Attacker Value
Unknown

CVE-2022-28749

Disclosure Date: June 14, 2022 (last updated October 07, 2023)
Zooms On-Premise Meeting Connector MMR before version 4.8.113.20220526 fails to properly check the permissions of a Zoom meeting attendee. As a result, a threat actor in the Zooms waiting room can join the meeting without the consent of the host.
Attacker Value
Unknown

CVE-2022-22783

Disclosure Date: April 27, 2022 (last updated October 07, 2023)
A vulnerability in Zoom On-Premise Meeting Connector Controller version 4.8.102.20220310 and On-Premise Meeting Connector MMR version 4.8.102.20220310 exposes process memory fragments to connected clients, which could be observed by a passive attacker.
Attacker Value
Unknown

CVE-2022-23292

Disclosure Date: April 15, 2022 (last updated November 29, 2024)
Microsoft Power BI Spoofing Vulnerability
0
Attacker Value
Unknown

CVE-2021-29899

Disclosure Date: March 17, 2022 (last updated October 07, 2023)
IBM Engineering Requirements Quality Assistant prior to 3.1.3 could allow an authenticated user to cause a denial of service. IBM X-Force ID: 207413.