|
196821
|
6.5 |
MEDIUM
Local
|
ibm
|
i2_ibase
|
IBM i2 iBase 8.9.13 could allow a local authenticated attacker to execute arbitrary code on the system, caused by a DLL search order hijacking flaw. By using a specially-crafted .DLL file, an attacke…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2020-4623
|
2024-11-21 14:33 |
2021-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196822
|
7.8 |
HIGH
Local
|
dell
|
supportassist_for_home_pcs supportassist_for_business_pcs
|
Dell SupportAssist for Business PCs versions 2.0, 2.0.1, 2.0.2, 2.1, 2.1.1, 2.1.2, 2.1.3 and Dell SupportAssist for Home PCs version 2.0, 2.0.1, 2.0.2, 2.1, 2.1.1, 2.1.2, 2.1.3, 2.2, 2.2.1, 2.2.2, 2.…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2020-5316
|
2024-11-21 14:33 |
2021-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196823
|
8.1 |
HIGH
Network
|
dell
|
emc_openmanage_enterprise-modular emc_openmanage_enterprise
|
Dell EMC OpenManage Enterprise (OME) versions prior to 3.2 and OpenManage Enterprise-Modular (OME-M) versions prior to 1.10.00 contain an injection vulnerability. A remote authenticated malicious use…
|
CWE-74
Injection
|
CVE-2020-5323
|
2024-11-21 14:33 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196824
|
9.1 |
CRITICAL
Network
|
dell
|
emc_openmanage_enterprise-modular
|
Dell EMC OpenManage Enterprise-Modular (OME-M) versions prior to 1.10.00 contain a command injection vulnerability. A remote authenticated malicious user with high privileges could potentially exploi…
|
CWE-78
OS Command
|
CVE-2020-5322
|
2024-11-21 14:33 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196825
|
7.6 |
HIGH
Network
|
dell
|
emc_openmanage_enterprise-modular emc_openmanage_enterprise
|
Dell EMC OpenManage Enterprise (OME) versions prior to 3.2 and OpenManage Enterprise-Modular (OME-M) versions prior to 1.10.00 contain an improper input validation vulnerability. A remote authenticat…
|
CWE-20
Improper Input Validation
|
CVE-2020-5321
|
2024-11-21 14:33 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196826
|
7.2 |
HIGH
Network
|
dell
|
emc_openmanage_enterprise-modular emc_openmanage_enterprise
|
Dell EMC OpenManage Enterprise (OME) versions prior to 3.2 and OpenManage Enterprise-Modular (OME-M) versions prior to 1.10.00 contain a SQL injection vulnerability. A remote authenticated malicious …
|
CWE-89
SQL Injection
|
CVE-2020-5320
|
2024-11-21 14:33 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196827
|
8.8 |
HIGH
Local
|
dell
|
emc_repository_manager
|
Dell EMC Repository Manager (DRM) version 3.2 contains a plain-text password storage vulnerability. Proxy server user password is stored in a plain text in a local database. A local authenticated mal…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-5315
|
2024-11-21 14:33 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196828
|
9.8 |
CRITICAL
Network
|
dell
|
emc_powerswitch_s5224f-on emc_powerswitch_s5248f-on emc_powerswitch_s5296f-on emc_powerswitch_s5232f-on emc_powerswitch_s5212f-on emc_powerswitch_s4128t-on emc_powerswitch_s4112t-on…
|
Dell EMC Networking S4100 and S5200 Series Switches manufactured prior to February 2020 contain a hardcoded credential vulnerability. A remote unauthenticated malicious user could exploit this vulner…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-5349
|
2024-11-21 14:33 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196829
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_team_concert rational_engineering_lifecycle_manager engineering_workflow_management rational_collaborative_lifecycle_management rational_doors_next_generation engineering_life…
|
IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…
|
CWE-79
Cross-site Scripting
|
CVE-2020-5031
|
2024-11-21 14:33 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196830
|
6.5 |
MEDIUM
Adjacent
|
ibm
|
qradar_security_information_and_event_manager
|
IBM QRadar SIEM 7.3 and 7.4 uses less secure methods for protecting data in transit between hosts when encrypt host connections is not enabled as well as data at rest. IBM X-Force ID: 192539.
|
CWE-312 CWE-319
Cleartext Storage of Sensitive Information Cleartext Transmission of Sensitive Information
|
CVE-2020-4980
|
2024-11-21 14:33 |
2021-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|