Show filters
3,035 Total Results
Displaying 71-80 of 3,035
Sort by:
Attacker Value
Unknown

CVE-2025-26491

Disclosure Date: February 11, 2025 (last updated February 15, 2025)
Rejected reason: This CVE ID is a duplicate of CVE-2025-26494.
0
Attacker Value
Unknown

CVE-2025-26490

Disclosure Date: February 11, 2025 (last updated February 15, 2025)
Rejected reason: This CVE ID is a duplicate of CVE-2025-26495.
0
Attacker Value
Unknown

CVE-2025-23363

Disclosure Date: February 11, 2025 (last updated February 11, 2025)
A vulnerability has been identified in Teamcenter (All versions < V14.3.0.0). The SSO login service of affected applications accepts user-controlled input that could specify a link to an external site. This could allow an attacker to redirect the legitimate user to an attacker-chosen URL to steal valid session data. For a successful exploit, the legitimate user must actively click on an attacker-crafted link.
Attacker Value
Unknown

CVE-2022-1736

Disclosure Date: January 31, 2025 (last updated January 31, 2025)
Ubuntu's configuration of gnome-control-center allowed Remote Desktop Sharing to be enabled by default.
0
Attacker Value
Unknown

CVE-2024-35114

Disclosure Date: January 25, 2025 (last updated January 26, 2025)
IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to enumerate usernames due to an observable discrepancy between login attempts.
Attacker Value
Unknown

CVE-2024-35113

Disclosure Date: January 25, 2025 (last updated January 26, 2025)
IBM Control Center 6.2.1 and 6.3.1 could allow an authenticated user to obtain sensitive information exposed through a directory listing.
Attacker Value
Unknown

CVE-2024-35112

Disclosure Date: January 25, 2025 (last updated January 26, 2025)
IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
Attacker Value
Unknown

CVE-2024-35111

Disclosure Date: January 25, 2025 (last updated January 26, 2025)
IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
Attacker Value
Unknown

CVE-2024-13406

Disclosure Date: January 22, 2025 (last updated January 25, 2025)
The XML for Google Merchant Center plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'feed_id' parameter in all versions up to, and including, 3.0.11 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
Attacker Value
Unknown

CVE-2024-13186

Disclosure Date: January 08, 2025 (last updated January 09, 2025)
The MinigameCenter module has insufficient restrictions on loading URLs, which may lead to some information leakage.
0