Show filters
322 Total Results
Displaying 201-210 of 322
Sort by:
Attacker Value
Unknown

CVE-2021-3380

Disclosure Date: November 10, 2021 (last updated February 23, 2025)
Insecure direct object reference (IDOR) vulnerability in ICREM H8 SSRMS allows attackers to disclose sensitive information via the Print Invoice Functionality.
Attacker Value
Unknown

CVE-2020-14264

Disclosure Date: October 25, 2021 (last updated February 23, 2025)
"HCL Traveler Companion is vulnerable to an iOS weak cryptographic process vulnerability via the included MobileIron AppConnect SDK"
Attacker Value
Unknown

CVE-2020-14263

Disclosure Date: October 21, 2021 (last updated February 23, 2025)
"HCL Traveler Companion is vulnerable to an iOS weak cryptographic process vulnerability via the included MobileIron AppConnect SDK"
Attacker Value
Unknown

CVE-2021-37606

Disclosure Date: July 30, 2021 (last updated February 23, 2025)
Meow hash 0.5/calico does not sufficiently thwart key recovery by an attacker who can query whether there's a collision in the bottom bits of the hashes of two messages, as demonstrated by an attack against a long-running web service that allows the attacker to infer collisions by measuring timing differences.
Attacker Value
Unknown

CVE-2021-25948

Disclosure Date: June 10, 2021 (last updated February 22, 2025)
Prototype pollution vulnerability in 'expand-hash' versions 0.1.0 through 1.0.1 allows an attacker to cause a denial of service and may lead to remote code execution.
Attacker Value
Unknown

CVE-2021-32673

Disclosure Date: June 08, 2021 (last updated February 22, 2025)
reg-keygen-git-hash-plugin is a reg-suit plugin to detect the snapshot key to be compare with using Git commit hash. reg-keygen-git-hash-plugin through and including 0.10.15 allow remote attackers to execute of arbitrary commands. Upgrade to version 0.10.16 or later to resolve this issue.
Attacker Value
Unknown

CVE-2020-4107

Disclosure Date: May 11, 2021 (last updated February 23, 2025)
HCL Domino is affected by an Insufficient Access Control vulnerability. An authenticated attacker with local access to the system could exploit this vulnerability to attain escalation of privileges, denial of service, or information disclosure.
Attacker Value
Unknown

CVE-2021-26797

Disclosure Date: April 26, 2021 (last updated February 22, 2025)
An access control vulnerability in Hame SD1 Wi-Fi firmware <=V.20140224154640 allows an attacker to get system administrator through an open Telnet service.
Attacker Value
Unknown

CVE-2020-4081

Disclosure Date: February 02, 2021 (last updated February 22, 2025)
In Digital Experience 8.5, 9.0, and 9.5, WSRP consumer is vulnerable to cross-site scripting (XSS).
Attacker Value
Unknown

CVE-2020-14221

Disclosure Date: February 02, 2021 (last updated November 28, 2024)
HCL Digital Experience 8.5, 9.0, and 9.5 exposes information about the server to unauthorized users.