|
195691
|
6.5 |
MEDIUM
Network
|
mongodb
|
go_driver
|
Specific cstrings input may not be properly validated in the MongoDB Go Driver when marshalling Go objects into BSON. A malicious user could use a Go object with specific string to potentially inject…
|
CWE-20
Improper Input Validation
|
CVE-2021-20329
|
2024-11-21 14:46 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195692
|
6.1 |
MEDIUM
Network
|
redhat netapp
|
resteasy oncommand_insight
|
A reflected Cross-Site Scripting (XSS) flaw was found in RESTEasy in all versions of RESTEasy up to 4.6.0.Final, where it did not properly handle URL encoding when calling @javax.ws.rs.PathParam with…
|
-
|
CVE-2021-20293
|
2024-11-21 14:46 |
2021-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195693
|
7.8 |
HIGH
Local
|
theforeman
|
foremanfogproxmox
|
A flaw was found in the Foreman project. The Proxmox compute resource exposes the password through the API to an authenticated local attacker with view_hosts permission. The highest threat from this …
|
-
|
CVE-2021-20259
|
2024-11-21 14:46 |
2021-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195694
|
8.8 |
HIGH
Network
|
ibm
|
websphere_application_server_nd
|
IBM WebSphere Application Server Network Deployment 8.5 and 9.0 could allow a remote authenticated attacker to traverse directories. An attacker could send a specially-crafted URL request containing …
|
CWE-22
Path Traversal
|
CVE-2021-20517
|
2024-11-21 14:46 |
2021-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195695
|
7.5 |
HIGH
Network
|
ibm
|
qradar_advisor_with_watson
|
IBM QRadar Advisor With Watson App 1.1 through 2.5 as used on IBM QRadar SIEM 7.4 could allow a remote user to obtain sensitive information from HTTP requests that could aid in further attacks agains…
|
NVD-CWE-noinfo
|
CVE-2021-20380
|
2024-11-21 14:46 |
2021-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195696
|
6.5 |
MEDIUM
Network
|
ibm
|
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana…
|
IBM Jazz Foundation and IBM Engineering products could allow a remote attacker to obtain sensitive information when an error message is returned in the browser. This information could be used in furt…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2021-20371
|
2024-11-21 14:46 |
2021-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195697
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana…
|
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2021-20348
|
2024-11-21 14:46 |
2021-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195698
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana…
|
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2021-20347
|
2024-11-21 14:46 |
2021-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195699
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana…
|
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2021-20346
|
2024-11-21 14:46 |
2021-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195700
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana…
|
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2021-20345
|
2024-11-21 14:46 |
2021-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|