Show filters
188 Total Results
Displaying 61-70 of 188
Sort by:
Attacker Value
Unknown

CVE-2022-39857

Disclosure Date: October 07, 2022 (last updated October 08, 2023)
Improper access control vulnerability in CameraTestActivity in FactoryCameraFB prior to version 3.5.51 allows attackers to access broadcasting Intent as system uid privilege.
Attacker Value
Unknown

CVE-2022-31251

Disclosure Date: August 02, 2022 (last updated October 08, 2023)
A Incorrect Default Permissions vulnerability in the packaging of the slurm testsuite of openSUSE Factory allows local attackers with control over the slurm user to escalate to root. This issue affects: openSUSE Factory slurm versions prior to 22.05.2-3.3.
Attacker Value
Unknown

CVE-2021-46687

Disclosure Date: July 06, 2022 (last updated October 07, 2023)
JFrog Artifactory prior to version 7.31.10 and 6.23.38 is vulnerable to Sensitive Data Exposure through the Project Administrator REST API. This issue affects: JFrog JFrog Artifactory JFrog Artifactory versions before 7.31.10 versions prior to 7.x; JFrog Artifactory versions before 6.23.38 versions prior to 6.x.
Attacker Value
Unknown

CVE-2021-45721

Disclosure Date: July 06, 2022 (last updated October 07, 2023)
JFrog Artifactory prior to version 7.29.8 and 6.23.38 is vulnerable to Reflected Cross-Site Scripting (XSS) through one of the XHR parameters in Users REST API endpoint. This issue affects: JFrog JFrog Artifactory JFrog Artifactory versions before 7.36.1 versions prior to 7.29.8; JFrog Artifactory versions before 6.23.41 versions prior to 6.23.38.
Attacker Value
Unknown

CVE-2021-23163

Disclosure Date: July 06, 2022 (last updated October 07, 2023)
JFrog Artifactory prior to version 7.33.6 and 6.23.38, is vulnerable to CSRF ( Cross-Site Request Forgery) for specific endpoints. This issue affects: JFrog JFrog Artifactory JFrog Artifactory versions before 7.33.6 versions prior to 7.x; JFrog Artifactory versions before 6.23.38 versions prior to 6.x.
Attacker Value
Unknown

CVE-2021-41834

Disclosure Date: May 23, 2022 (last updated October 07, 2023)
JFrog Artifactory prior to version 7.28.0 and 6.23.38, is vulnerable to Broken Access Control, the copy functionality can be used by a low-privileged user to read and copy any artifact that exists in the Artifactory deployment due to improper permissions validation.
Attacker Value
Unknown

CVE-2021-45730

Disclosure Date: May 19, 2022 (last updated October 07, 2023)
JFrog Artifactory prior to 7.31.10, is vulnerable to Broken Access Control where a Project Admin is able to create, edit and delete Repository Layouts while Repository Layouts configuration should only be available for Platform Administrators.
Attacker Value
Unknown

CVE-2022-0573

Disclosure Date: May 16, 2022 (last updated October 07, 2023)
JFrog Artifactory before 7.36.1 and 6.23.41, is vulnerable to Insecure Deserialization of untrusted data which can lead to DoS, Privilege Escalation and Remote Code Execution when a specially crafted request is sent by a low privileged authenticated user due to insufficient validation of a user-provided serialized object.
Attacker Value
Unknown

CVE-2022-27838

Disclosure Date: April 11, 2022 (last updated October 07, 2023)
Improper access control vulnerability in FactoryCamera prior to version 2.1.96 allows attacker to access the file with system privilege.
Attacker Value
Unknown

CVE-2021-32960

Disclosure Date: April 01, 2022 (last updated October 07, 2023)
Rockwell Automation FactoryTalk Services Platform v6.11 and earlier, if FactoryTalk Security is enabled and deployed contains a vulnerability that may allow a remote, authenticated attacker to bypass FactoryTalk Security policies based on the computer name. If successfully exploited, this may allow an attacker to have the same privileges as if they were logged on to the client machine.