Show filters
1,988 Total Results
Displaying 641-650 of 1,988
Sort by:
Attacker Value
Unknown

CVE-2020-4941

Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 could reveal sensitive version information about the server from error pages that could aid an attacker in further attacks against the system. IBM X-Force ID: 191941.
Attacker Value
Unknown

CVE-2020-4809

Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 189633.
Attacker Value
Unknown

CVE-2020-4805

Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 189539.
Attacker Value
Unknown

CVE-2020-4803

Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 189535.
Attacker Value
Unknown

CVE-2021-23443

Disclosure Date: September 21, 2021 (last updated February 23, 2025)
This affects the package edge.js before 5.3.2. A type confusion vulnerability can be used to bypass input sanitization when the input to be rendered is an array (instead of a string or a SafeValue), even if {{ }} are used.
Attacker Value
Unknown

CVE-2021-38669

Disclosure Date: September 15, 2021 (last updated November 28, 2024)
Microsoft Edge (Chromium-based) Tampering Vulnerability
0
Attacker Value
Unknown

CVE-2021-37531

Disclosure Date: September 14, 2021 (last updated February 23, 2025)
SAP NetWeaver Knowledge Management XML Forms versions - 7.10, 7.11, 7.30, 7.31, 7.40, 7.50, contains an XSLT vulnerability which allows a non-administrative authenticated attacker to craft a malicious XSL stylesheet file containing a script with OS-level commands, copy it into a location to be accessed by the system and then create a file which will trigger the XSLT engine to execute the script contained within the malicious XSL file. This can result in a full compromise of the confidentiality, integrity, and availability of the system.
Attacker Value
Unknown

CVE-2021-37202

Disclosure Date: September 14, 2021 (last updated February 23, 2025)
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The IFC adapter in affected application contains a use-after-free vulnerability that could be triggered while parsing user-supplied IFC files. An attacker could leverage this vulnerability to execute code in the context of the current process.
Attacker Value
Unknown

CVE-2021-37203

Disclosure Date: September 14, 2021 (last updated February 23, 2025)
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The plmxmlAdapterIFC.dll contains an out-of-bounds read while parsing user supplied IFC files which could result in a read past the end of an allocated buffer. This could allow an attacker to cause a denial-of-service condition or read sensitive information from memory locations.
Attacker Value
Unknown

CVE-2021-37184

Disclosure Date: September 14, 2021 (last updated February 23, 2025)
A vulnerability has been identified in Industrial Edge Management (All versions < V1.3). An unauthenticated attacker could change the the password of any user in the system under certain circumstances. With this an attacker could impersonate any valid user on an affected system.