|
199611
|
7.5 |
HIGH
Local
|
vmware
|
esxi fusion cloud_foundation workstation
|
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain a hea…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-3967
|
2024-11-21 14:32 |
2020-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199612
|
7.5 |
HIGH
Local
|
vmware
|
esxi workstation fusion cloud_foundation
|
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.2), and Fusion (11.x before 11.5.2) contain a hea…
|
CWE-362
Race Condition
|
CVE-2020-3966
|
2024-11-21 14:32 |
2020-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199613
|
4.7 |
MEDIUM
Local
|
vmware
|
esxi workstation fusion cloud_foundation
|
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.2), and Fusion (11.x before 11.5.2) contain an in…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2020-3964
|
2024-11-21 14:32 |
2020-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199614
|
8.2 |
HIGH
Local
|
vmware
|
esxi fusion cloud_foundation workstation
|
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain a use…
|
CWE-416
Use After Free
|
CVE-2020-3962
|
2024-11-21 14:32 |
2020-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199615
|
7.8 |
HIGH
Local
|
vmware
|
esxi fusion cloud_foundation workstation
|
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an of…
|
CWE-193
Off-by-one Error
|
CVE-2020-3969
|
2024-11-21 14:32 |
2020-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199616
|
5.9 |
MEDIUM
Network
|
ibm
|
security_secret_server
|
IBM Security Secret Server 10.7 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this …
|
CWE-862
Missing Authorization
|
CVE-2020-4413
|
2024-11-21 14:32 |
2020-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199617
|
5.3 |
MEDIUM
Network
|
ibm
|
security_secret_server
|
IBM Security Secret Server 10.7 could disclose sensitive information included in installation files to an unauthorized user. IBM X-Force ID: 178182.
|
NVD-CWE-noinfo
|
CVE-2020-4342
|
2024-11-21 14:32 |
2020-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199618
|
5.3 |
MEDIUM
Network
|
ibm
|
security_secret_server
|
IBM Security Secret Server 10.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in fur…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2020-4341
|
2024-11-21 14:32 |
2020-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199619
|
5.3 |
MEDIUM
Network
|
ibm
|
security_secret_server
|
IBM Security Secret Server 10.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in fur…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2020-4327
|
2024-11-21 14:32 |
2020-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199620
|
6.1 |
MEDIUM
Network
|
ibm
|
security_secret_server
|
IBM Security Secret Server 10.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potent…
|
CWE-79
Cross-site Scripting
|
CVE-2020-4323
|
2024-11-21 14:32 |
2020-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|