|
219311
|
7.5 |
HIGH
Network
|
ibm netapp
|
cognos_analytics oncommand_insight
|
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain credentials from a user's browser via incorrect autocomplete settings in New Content Backup page. IBM X-Force ID: 172130.
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-4724
|
2024-11-21 13:44 |
2021-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219312
|
7.5 |
HIGH
Network
|
ibm netapp
|
cognos_analytics oncommand_insight
|
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain credentials from a user's browser via incorrect autocomplete settings in New Data Server Connection page. IBM X-Force ID: 17…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-4723
|
2024-11-21 13:44 |
2021-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219313
|
4.3 |
MEDIUM
Network
|
ibm netapp
|
cognos_analytics oncommand_insight
|
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain sensitive information via a stack trace due to mishandling of certain error conditions. IBM X-Force ID: 172128.
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2019-4722
|
2024-11-21 13:44 |
2021-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219314
|
9.8 |
CRITICAL
Network
|
arubanetworks siemens
|
instant scalance_w1750d_firmware
|
A remote buffer overflow vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.4.x: 6.4.4.8-4.2.4.17 and below; Aruba Instant 6.5.x: 6.5.4.16 a…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-5319
|
2024-11-21 13:44 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219315
|
6.8 |
MEDIUM
Physics
|
arubanetworks siemens
|
instant scalance_w1750d_firmware
|
A local authentication bypass vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.4.x: 6.4.4.8-4.2.4.18 and below; Aruba Instant 6.5.x: 6.5.4…
|
CWE-287
Improper Authentication
|
CVE-2019-5317
|
2024-11-21 13:44 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219316
|
8.1 |
HIGH
Network
|
ibm
|
security_guardium_data_encrpytion
|
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-4702
|
2024-11-21 13:44 |
2021-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219317
|
8.8 |
HIGH
Network
|
ibm
|
sterling_b2b_integrator
|
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5_2, 6.0.0.0 through 6.0.3.2, and 6.1.0.0 could allow a remote attacker to execute arbitrary code on the system, caused by the deser…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2019-4728
|
2024-11-21 13:44 |
2021-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219318
|
6.5 |
MEDIUM
Network
|
ibm
|
sterling_b2b_integrator
|
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.1 discloses sensitive information to an authenticated user from the dashboard UI which could be used in …
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2019-4738
|
2024-11-21 13:44 |
2020-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219319
|
6.1 |
MEDIUM
Network
|
ibm
|
security_access_manager
|
IBM Security Access Manager Appliance 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functional…
|
CWE-79
Cross-site Scripting
|
CVE-2019-4725
|
2024-11-21 13:44 |
2020-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219320
|
8.8 |
HIGH
Network
|
arubanetworks
|
5400r_firmware 3810_firmware 2920_firmware 2930_firmware 2530_firmware 2540_firmware
|
Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0007, 16.10.* before 16.10.0003 are vulnerable to R…
|
NVD-CWE-noinfo
|
CVE-2019-5321
|
2024-11-21 13:44 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|