|
219021
|
8.8 |
HIGH
Network
|
ibm
|
sterling_b2b_integrator
|
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5_2, 6.0.0.0 through 6.0.3.2, and 6.1.0.0 could allow a remote attacker to execute arbitrary code on the system, caused by the deser…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2019-4728
|
2024-11-21 13:44 |
2021-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219022
|
6.5 |
MEDIUM
Network
|
ibm
|
sterling_b2b_integrator
|
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.1 discloses sensitive information to an authenticated user from the dashboard UI which could be used in …
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2019-4738
|
2024-11-21 13:44 |
2020-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219023
|
6.1 |
MEDIUM
Network
|
ibm
|
security_access_manager
|
IBM Security Access Manager Appliance 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functional…
|
CWE-79
Cross-site Scripting
|
CVE-2019-4725
|
2024-11-21 13:44 |
2020-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219024
|
8.8 |
HIGH
Network
|
arubanetworks
|
5400r_firmware 3810_firmware 2920_firmware 2930_firmware 2530_firmware 2540_firmware
|
Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0007, 16.10.* before 16.10.0003 are vulnerable to R…
|
NVD-CWE-noinfo
|
CVE-2019-5321
|
2024-11-21 13:44 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219025
|
6.1 |
MEDIUM
Network
|
arubanetworks
|
5400r_firmware 3810_firmware 2920_firmware 2930_firmware 2530_firmware 2540_firmware
|
Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0007, 16.10.* before 16.10.0003 are vulnerable to C…
|
CWE-79
Cross-site Scripting
|
CVE-2019-5320
|
2024-11-21 13:44 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219026
|
3.3 |
LOW
Local
|
ibm
|
guardium_data_encryption
|
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 171926.
|
CWE-922
Insecure Storage of Sensitive Information
|
CVE-2019-4695
|
2024-11-21 13:44 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219027
|
8.8 |
HIGH
Network
|
ibm
|
guardium_for_cloud_key_management guardium_data_encryption
|
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could …
|
NVD-CWE-noinfo
|
CVE-2019-4713
|
2024-11-21 13:44 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219028
|
5.3 |
MEDIUM
Network
|
ibm
|
guardium_for_cloud_key_management guardium_data_encryption
|
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 is deployed with active debugging code that can create unintended entry points. IBM X-Force ID: 171936.
|
NVD-CWE-noinfo
|
CVE-2019-4701
|
2024-11-21 13:44 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219029
|
2.7 |
LOW
Network
|
ibm
|
guardium_for_cloud_key_management guardium_data_encryption
|
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 generates an error message that includes sensitive information about its environment, users, or associated data. IBM X-Force ID: 171931.
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2019-4699
|
2024-11-21 13:44 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219030
|
7.5 |
HIGH
Network
|
ibm
|
guardium_for_cloud_key_management guardium_data_encryption
|
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force I…
|
CWE-521
Weak Password Requirements
|
CVE-2019-4698
|
2024-11-21 13:44 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|