|
197761
|
7.5 |
HIGH
Network
|
ibm
|
security_guardium_insights
|
IBM Security Guardium Insights 2.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 174405.
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2020-4169
|
2024-11-21 14:32 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197762
|
6.5 |
MEDIUM
Network
|
ibm
|
security_guardium_insights
|
IBM Security Guardium Insights 2.0.1 could allow an attacker to obtain sensitive information or perform unauthorized actions due to improper authenciation mechanisms. IBM X-Force ID: 174403.
|
CWE-287
Improper Authentication
|
CVE-2020-4167
|
2024-11-21 14:32 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197763
|
5.3 |
MEDIUM
Network
|
ibm
|
security_guardium_insights
|
IBM Security Guardium Insights 2.0.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used i…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2020-4166
|
2024-11-21 14:32 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197764
|
6.1 |
MEDIUM
Network
|
ibm
|
security_guardium_insights
|
IBM Security Guardium Insights 2.0.1 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially crafted Web site, a remote a…
|
CWE-601
Open Redirect
|
CVE-2020-4598
|
2024-11-21 14:32 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197765
|
4.4 |
MEDIUM
Local
|
ibm
|
security_guardium_insights
|
IBM Security Guardium Insights 2.0.1 stores user credentials in plain in clear text which can be read by a local user. IBM X-Force ID: 184747.
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-4593
|
2024-11-21 14:32 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197766
|
7.8 |
HIGH
Local
|
ibm
|
sterling_connect\ connect\
|
IBM Sterling Connect:Direct for UNIX 4.2.0, 4.3.0, 6.0.0, and 6.1.0 is vulnerable to a stack based buffer ovreflow, caused by improper bounds checking. A local attacker could manipulate CD UNIX to ob…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-4587
|
2024-11-21 14:32 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197767
|
6.5 |
MEDIUM
Network
|
ibm
|
elastic_storage_server
|
IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.5 could allow an authenticated user to cause a denial of service during deployment while configuring some of the network services. …
|
NVD-CWE-noinfo
|
CVE-2020-4383
|
2024-11-21 14:32 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197768
|
5.5 |
MEDIUM
Local
|
ibm
|
elastic_storage_server
|
IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.5 could allow an authenticated user to cause a denial of service during deployment or upgrade pertaining to xcat services. IBM X-Fo…
|
NVD-CWE-noinfo
|
CVE-2020-4382
|
2024-11-21 14:32 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197769
|
4.3 |
MEDIUM
Network
|
ibm
|
security_guardium_insights
|
IBM Security Guardium Insights 2.0.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website t…
|
CWE-352
Origin Validation Error
|
CVE-2020-4170
|
2024-11-21 14:32 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197770
|
5.4 |
MEDIUM
Network
|
ibm
|
security_guardium_insights
|
IBM Security Guardium Insights 2.0.1 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit t…
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2020-4165
|
2024-11-21 14:32 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|