Show filters
613 Total Results
Displaying 211-220 of 613
Sort by:
Attacker Value
Unknown
CVE-2021-30356
Disclosure Date: April 22, 2021 (last updated February 22, 2025)
A denial of service vulnerability was reported in Check Point Identity Agent before R81.018.0000, which could allow low privileged users to overwrite protected system files.
0
Attacker Value
Unknown
CVE-2020-17453
Disclosure Date: April 05, 2021 (last updated February 22, 2025)
WSO2 Management Console through 5.10 allows XSS via the carbon/admin/login.jsp msgId parameter.
0
Attacker Value
Unknown
CVE-2020-36255
Disclosure Date: March 05, 2021 (last updated November 28, 2024)
An issue was discovered in IdentityModel (aka ScottBrady.IdentityModel) before 1.3.0. The Branca implementation allows an attacker to modify and forge authentication tokens.
0
Attacker Value
Unknown
CVE-2021-1416
Disclosure Date: February 17, 2021 (last updated February 22, 2025)
Multiple vulnerabilities in the Admin portal of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain sensitive information. These vulnerabilities are due to improper enforcement of administrator privilege levels for sensitive data. An attacker with read-only administrator access to the Admin portal could exploit these vulnerabilities by browsing to one of the pages that contains sensitive data. A successful exploit could allow the attacker to collect sensitive information regarding the configuration of the system. For more information about these vulnerabilities, see the Details section of this advisory.
0
Attacker Value
Unknown
CVE-2021-1412
Disclosure Date: February 17, 2021 (last updated February 22, 2025)
Multiple vulnerabilities in the Admin portal of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain sensitive information. These vulnerabilities are due to improper enforcement of administrator privilege levels for sensitive data. An attacker with read-only administrator access to the Admin portal could exploit these vulnerabilities by browsing to one of the pages that contains sensitive data. A successful exploit could allow the attacker to collect sensitive information regarding the configuration of the system. For more information about these vulnerabilities, see the Details section of this advisory.
0
Attacker Value
Unknown
CVE-2020-4996
Disclosure Date: February 08, 2021 (last updated February 22, 2025)
IBM Security Identity Governance and Intelligence 5.2.6 could allow a local user to obtain sensitive information via the capturing of screenshots of authentication credentials. IBM X-Force ID: 192913.
0
Attacker Value
Unknown
CVE-2020-4795
Disclosure Date: February 08, 2021 (last updated November 28, 2024)
IBM Security Identity Governance and Intelligence 5.2.6 could disclose sensitive information to an unauthorized user using a specially crafted HTTP request. IBM X-Force ID: 189446.
0
Attacker Value
Unknown
CVE-2020-4790
Disclosure Date: February 08, 2021 (last updated February 22, 2025)
IBM Security Identity Governance and Intelligence 5.2.6 could allow a user to cause a denial of service due to improperly validating a supplied URL, rendering the application unusuable. IBM X-Force ID: 189375.
0
Attacker Value
Unknown
CVE-2020-4791
Disclosure Date: February 08, 2021 (last updated February 22, 2025)
IBM Security Identity Governance and Intelligence 5.2.6 could allow an attacker to obtain sensitive information using main in the middle attacks due to improper certificate validation. IBM X-Force ID: 189379.
0
Attacker Value
Unknown
CVE-2020-4995
Disclosure Date: February 08, 2021 (last updated February 22, 2025)
IBM Security Identity Governance and Intelligence 5.2.6 does not invalidate session after logout which could allow a user to obtain sensitive information from another users' session. IBM X-Force ID: 192912.
0