Page 168 of 12748 results (0.243 seconds)

CVSS: 4.4EPSS: 0%CPEs: -EXPL: 0

04 Mar 2024 — In nvram, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/March-2024 • CWE-787: Out-of-bounds Write •

CVSS: 4.4EPSS: 0%CPEs: -EXPL: 0

04 Mar 2024 — In da, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/March-2024 •

CVSS: 4.4EPSS: 0%CPEs: -EXPL: 0

04 Mar 2024 — In da, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/March-2024 •

CVSS: 4.4EPSS: 0%CPEs: 1EXPL: 0

04 Mar 2024 — This could lead to local information disclosure with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/March-2024 •

CVSS: 4.3EPSS: 0%CPEs: 1EXPL: 0

04 Mar 2024 — Kofax Power PDF JPG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. Kofax Power PDF JPG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Kofax Power PDF. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Kofax Power PDF. This vulnerability allows remote attackers t... • https://www.zerodayinitiative.com/advisories/ZDI-24-232 • CWE-125: Out-of-bounds Read •

CVSS: 6.1EPSS: 0%CPEs: -EXPL: 0

03 Mar 2024 — IBM Watson CP4D Data Stores 4.6.0, 4.6.1, 4.6.2, and 4.6.3 does not encrypt sensitive or critical information before storage or transmission which could allow an attacker to obtain sensitive information. • https://exchange.xforce.ibmcloud.com/vulnerabilities/248740 • CWE-311: Missing Encryption of Sensitive Data CWE-319: Cleartext Transmission of Sensitive Information

CVSS: 6.2EPSS: 0%CPEs: 5EXPL: 0

03 Mar 2024 — IBM MQ Operator 2.0.0 LTS, 2.0.18 LTS, 3.0.0 CD, 3.0.1 CD, 2.4.0 through 2.4.7, 2.3.0 through 2.3.3, 2.2.0 through 2.2.2, and 2.3.0 through 2.3.3 stores or transmits user credentials in plain clear text which can be read by a local user using a trace command. IBM X-Force ID: 272638. • https://exchange.xforce.ibmcloud.com/vulnerabilities/272638 • CWE-319: Cleartext Transmission of Sensitive Information

CVSS: 5.9EPSS: 0%CPEs: 5EXPL: 0

03 Mar 2024 — IBM MQ Operator 2.0.0 LTS, 2.0.18 LTS, 3.0.0 CD, 3.0.1 CD, 2.4.0 through 2.4.7, 2.3.0 through 2.3.3, 2.2.0 through 2.2.2, and 2.3.0 through 2.3.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. • https://exchange.xforce.ibmcloud.com/vulnerabilities/283905 • CWE-327: Use of a Broken or Risky Cryptographic Algorithm •

CVSS: 9.1EPSS: 0%CPEs: -EXPL: 0

03 Mar 2024 — A vulnerability was found in Helm that may lead to sensitive information disclosure. • https://github.com/helm/helm/issues/7275 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-201: Insertion of Sensitive Information Into Sent Data •

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 0

01 Mar 2024 — Certain HP DesignJet print products are potentially vulnerable to information disclosure related to accessing memory out-of-bounds when using the general-purpose gateway (GGW) over port 9220. • https://support.hp.com/us-en/document/ish_10235960-10236033-16/hpsbpi03920 • CWE-125: Out-of-bounds Read •