Show filters
597 Total Results
Displaying 51-60 of 597
Sort by:
Attacker Value
Unknown

CVE-2021-22532

Disclosure Date: September 12, 2024 (last updated September 20, 2024)
Possible NLDAP Denial of Service attack Vulnerability in eDirectory has been discovered in OpenText™ eDirectory before 9.2.4.0000.
Attacker Value
Unknown

CVE-2021-22503

Disclosure Date: September 12, 2024 (last updated September 20, 2024)
Possible Improper Neutralization of Input During Web Page Generation Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 9.2.3.0000.
Attacker Value
Unknown

CVE-2024-8445

Disclosure Date: September 05, 2024 (last updated October 01, 2024)
The fix for CVE-2024-2199 in 389-ds-base was insufficient to cover all scenarios. In certain product versions, an authenticated user may cause a server crash while modifying `userPassword` using malformed input.
0
Attacker Value
Unknown

CVE-2024-3673

Disclosure Date: August 30, 2024 (last updated August 30, 2024)
The Web Directory Free WordPress plugin before 1.7.3 does not validate a parameter before using it in an include(), which could lead to Local File Inclusion issues.
0
Attacker Value
Unknown

CVE-2024-43145

Disclosure Date: August 18, 2024 (last updated August 19, 2024)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AyeCode Ltd GeoDirectory.This issue affects GeoDirectory: from n/a through 2.3.61.
0
Attacker Value
Unknown

CVE-2022-33162

Disclosure Date: August 16, 2024 (last updated September 07, 2024)
IBM Security Directory Integrator 7.2.0 and Security Verify Directory Integrator 10.0.0 does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources, at the privilege level of a standard unprivileged user. IBM X-Force ID: 228570.
Attacker Value
Unknown

CVE-2023-7249

Disclosure Date: August 12, 2024 (last updated August 14, 2024)
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in OpenText OpenText Directory Services allows Path Traversal.This issue affects OpenText Directory Services: from 16.4.2 before 24.1.
Attacker Value
Unknown

CVE-2022-33167

Disclosure Date: July 30, 2024 (last updated August 14, 2024)
IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could exploit this vulnerability to obtain sensitive information from the cookie. IBM X-Force ID: 228587.
Attacker Value
Unknown

CVE-2024-3669

Disclosure Date: July 30, 2024 (last updated July 30, 2024)
The Web Directory Free WordPress plugin before 1.7.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin
0
Attacker Value
Unknown

CVE-2024-1287

Disclosure Date: July 30, 2024 (last updated July 30, 2024)
The pmpro-member-directory WordPress plugin before 1.2.6 does not prevent users with at least the contributor role from leaking other users' sensitive information, including password hashes.
0