Show filters
1,988 Total Results
Displaying 641-650 of 1,988
Sort by:
Attacker Value
Unknown
CVE-2020-4941
Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 could reveal sensitive version information about the server from error pages that could aid an attacker in further attacks against the system. IBM X-Force ID: 191941.
0
Attacker Value
Unknown
CVE-2020-4809
Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 189633.
0
Attacker Value
Unknown
CVE-2020-4805
Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 189539.
0
Attacker Value
Unknown
CVE-2020-4803
Disclosure Date: September 22, 2021 (last updated February 23, 2025)
IBM Edge 4.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 189535.
0
Attacker Value
Unknown
CVE-2021-23443
Disclosure Date: September 21, 2021 (last updated February 23, 2025)
This affects the package edge.js before 5.3.2. A type confusion vulnerability can be used to bypass input sanitization when the input to be rendered is an array (instead of a string or a SafeValue), even if {{ }} are used.
0
Attacker Value
Unknown
CVE-2021-38669
Disclosure Date: September 15, 2021 (last updated November 28, 2024)
Microsoft Edge (Chromium-based) Tampering Vulnerability
0
Attacker Value
Unknown
CVE-2021-37531
Disclosure Date: September 14, 2021 (last updated February 23, 2025)
SAP NetWeaver Knowledge Management XML Forms versions - 7.10, 7.11, 7.30, 7.31, 7.40, 7.50, contains an XSLT vulnerability which allows a non-administrative authenticated attacker to craft a malicious XSL stylesheet file containing a script with OS-level commands, copy it into a location to be accessed by the system and then create a file which will trigger the XSLT engine to execute the script contained within the malicious XSL file. This can result in a full compromise of the confidentiality, integrity, and availability of the system.
0
Attacker Value
Unknown
CVE-2021-37202
Disclosure Date: September 14, 2021 (last updated February 23, 2025)
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The IFC adapter in affected application contains a use-after-free vulnerability that could be triggered while parsing user-supplied IFC files. An attacker could leverage this vulnerability to execute code in the context of the current process.
0
Attacker Value
Unknown
CVE-2021-37203
Disclosure Date: September 14, 2021 (last updated February 23, 2025)
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The plmxmlAdapterIFC.dll contains an out-of-bounds read while parsing user supplied IFC files which could result in a read past the end of an allocated buffer. This could allow an attacker to cause a denial-of-service condition or read sensitive information from memory locations.
0
Attacker Value
Unknown
CVE-2021-37184
Disclosure Date: September 14, 2021 (last updated February 23, 2025)
A vulnerability has been identified in Industrial Edge Management (All versions < V1.3). An unauthenticated attacker could change the the password of any user in the system under certain circumstances. With this an attacker could impersonate any valid user on an affected system.
0