Show filters
464 Total Results
Displaying 1-10 of 464
Sort by:
Attacker Value
Unknown
CVE-2020-27932
Disclosure Date: December 08, 2020 (last updated November 28, 2024)
A type confusion issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 12.4.9, watchOS 6.2.9, Security Update 2020-006 High Sierra, Security Update 2020-006 Mojave, iOS 14.2 and iPadOS 14.2, watchOS 5.3.9, macOS Catalina 10.15.7 Supplemental Update, macOS Catalina 10.15.7 Update. A malicious application may be able to execute arbitrary code with kernel privileges.
1
Attacker Value
High
CVE-2020-9850
Disclosure Date: June 09, 2020 (last updated November 28, 2024)
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.5 and iPadOS 13.5, tvOS 13.4.5, watchOS 6.2.5, Safari 13.1.1, iTunes 12.10.7 for Windows, iCloud for Windows 11.2, iCloud for Windows 7.19. A remote attacker may be able to cause arbitrary code execution.
1
Attacker Value
Unknown
CVE-2024-43191
Disclosure Date: September 26, 2024 (last updated September 27, 2024)
IBM ManageIQ could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted yaml file request.
0
Attacker Value
Unknown
CVE-2023-46175
Disclosure Date: September 26, 2024 (last updated September 27, 2024)
IBM Cloud Pak for Multicloud Management 2.3 through 2.3 FP8 stores user credentials in a log file plain clear text which can be read by a privileged user.
0
Attacker Value
Unknown
CVE-2022-42438
Disclosure Date: February 08, 2023 (last updated November 08, 2023)
IBM Cloud Pak for Multicloud Management Monitoring 2.0 and 2.3 allows users without admin roles access to admin functions by specifying direct URL paths. IBM X-Force ID: 238210.
0
Attacker Value
Unknown
CVE-2022-46698
Disclosure Date: December 15, 2022 (last updated October 08, 2023)
A logic issue was addressed with improved checks. This issue is fixed in Safari 16.2, tvOS 16.2, iCloud for Windows 14.1, macOS Ventura 13.1, iOS 16.2 and iPadOS 16.2, watchOS 9.2. Processing maliciously crafted web content may disclose sensitive user information.
0
Attacker Value
Unknown
CVE-2022-46693
Disclosure Date: December 15, 2022 (last updated October 08, 2023)
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in tvOS 16.2, iCloud for Windows 14.1, macOS Ventura 13.1, iOS 16.2 and iPadOS 16.2, watchOS 9.2. Processing a maliciously crafted file may lead to arbitrary code execution.
0
Attacker Value
Unknown
CVE-2022-46692
Disclosure Date: December 15, 2022 (last updated October 08, 2023)
A logic issue was addressed with improved state management. This issue is fixed in Safari 16.2, tvOS 16.2, iCloud for Windows 14.1, iOS 15.7.2 and iPadOS 15.7.2, macOS Ventura 13.1, iOS 16.2 and iPadOS 16.2, watchOS 9.2. Processing maliciously crafted web content may bypass Same Origin Policy.
0
Attacker Value
Unknown
CVE-2020-36521
Disclosure Date: September 23, 2022 (last updated October 08, 2023)
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iCloud for Windows 11.4, iOS 14.0 and iPadOS 14.0, watchOS 7.0, tvOS 14.0, iCloud for Windows 7.21, iTunes for Windows 12.10.9. Processing a maliciously crafted tiff file may lead to a denial-of-service or potentially disclose memory contents.
0
Attacker Value
Unknown
CVE-2021-38941
Disclosure Date: June 29, 2022 (last updated October 07, 2023)
IBM CloudPak for Multicloud Monitoring 2.0 and 2.3 has a few containers running in privileged mode which is vulnerable to host information leakage or destruction if unauthorized access to these containers could execute arbitrary commands. IBM X-Force ID: 211048.
0