|
197181
|
8.8 |
HIGH
Local
|
dell
|
emc_repository_manager
|
Dell EMC Repository Manager (DRM) version 3.2 contains a plain-text password storage vulnerability. Proxy server user password is stored in a plain text in a local database. A local authenticated mal…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-5315
|
2024-11-21 14:33 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197182
|
9.8 |
CRITICAL
Network
|
dell
|
emc_powerswitch_s5224f-on emc_powerswitch_s5248f-on emc_powerswitch_s5296f-on emc_powerswitch_s5232f-on emc_powerswitch_s5212f-on emc_powerswitch_s4128t-on emc_powerswitch_s4112t-on…
|
Dell EMC Networking S4100 and S5200 Series Switches manufactured prior to February 2020 contain a hardcoded credential vulnerability. A remote unauthenticated malicious user could exploit this vulner…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-5349
|
2024-11-21 14:33 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197183
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_team_concert rational_engineering_lifecycle_manager engineering_workflow_management rational_collaborative_lifecycle_management rational_doors_next_generation engineering_life…
|
IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…
|
CWE-79
Cross-site Scripting
|
CVE-2020-5031
|
2024-11-21 14:33 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197184
|
6.5 |
MEDIUM
Adjacent
|
ibm
|
qradar_security_information_and_event_manager
|
IBM QRadar SIEM 7.3 and 7.4 uses less secure methods for protecting data in transit between hosts when encrypt host connections is not enabled as well as data at rest. IBM X-Force ID: 192539.
|
CWE-312 CWE-319
Cleartext Storage of Sensitive Information Cleartext Transmission of Sensitive Information
|
CVE-2020-4980
|
2024-11-21 14:33 |
2021-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197185
|
9.8 |
CRITICAL
Network
|
ibm
|
infosphere_data_replication infosphere_change_data_capture
|
IBM InfoSphere Data Replication 11.4 and IBM InfoSphere Change Data Capture for z/OS 10.2.1, under certain configurations, could allow a user to bypass authentication mechanisms using an empty passwo…
|
CWE-287
Improper Authentication
|
CVE-2020-4821
|
2024-11-21 14:33 |
2021-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197186
|
6.5 |
MEDIUM
Network
|
ibm
|
infosphere_master_data_management_server
|
IBM InfoSphere Master Data Management Server 11.6 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that …
|
CWE-352
Origin Validation Error
|
CVE-2020-4675
|
2024-11-21 14:33 |
2021-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197187
|
8.8 |
HIGH
Network
|
ibm
|
mq_appliance
|
IBM MQ Appliance 9.1 and 9.2 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. I…
|
CWE-352
Origin Validation Error
|
CVE-2020-4938
|
2024-11-21 14:33 |
2021-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197188
|
5.4 |
MEDIUM
Network
|
ibm
|
datacap_navigator
|
IBM Datacap Fastdoc Capture (IBM Datacap Navigator 9.1.7 ) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the in…
|
CWE-79
Cross-site Scripting
|
CVE-2020-4935
|
2024-11-21 14:33 |
2021-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197189
|
8.8 |
HIGH
Network
|
ibm
|
datacap_navigator
|
IBM Datacap Taskmaster Capture (IBM Datacap Navigator 9.1.7) is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add…
|
CWE-89
SQL Injection
|
CVE-2020-4902
|
2024-11-21 14:33 |
2021-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197190
|
8.1 |
HIGH
Network
|
ibm
|
db2
|
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow an authenticated user to overwrite arbirary files due to improper group permissions. IBM X-Force ID: 191945.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-4945
|
2024-11-21 14:33 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|