Page 33 of 12672 results (0.159 seconds)

CVSS: 4.9EPSS: 0%CPEs: 1EXPL: 0

19 Dec 2024 — IBM Robotic Process Automation 21.0.1, 21.0.2, and 21.0.3 could allow a user with psychical access to the system to obtain sensitive information due to insufficiently protected credentials. • https://www.ibm.com/support/pages/node/6608458 • CWE-522: Insufficiently Protected Credentials •

CVSS: 5.9EPSS: 0%CPEs: 1EXPL: 0

19 Dec 2024 — IBM Cognos Analytics Mobile for Android 1.1.14 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. • https://www.ibm.com/support/pages/node/6555140 • CWE-319: Cleartext Transmission of Sensitive Information

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

19 Dec 2024 — AnyDesk Link Following Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of AnyDesk. ... This vulnerability allows local attackers to disclose sensitive information on affected installations of AnyDesk. • https://www.zerodayinitiative.com/advisories/ZDI-24-1711 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

18 Dec 2024 — (Gravedad de seguridad de Chromium: alta) Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. • https://chromereleases.googleblog.com/2024/12/stable-channel-update-for-desktop_18.html • CWE-787: Out-of-bounds Write •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

18 Dec 2024 — (Gravedad de seguridad de Chromium: Alta) Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. • https://chromereleases.googleblog.com/2024/12/stable-channel-update-for-desktop_18.html • CWE-416: Use After Free •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

18 Dec 2024 — (Gravedad de seguridad de Chromium: alta) Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. • https://chromereleases.googleblog.com/2024/12/stable-channel-update-for-desktop_18.html •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

18 Dec 2024 — (Gravedad de seguridad de Chromium: alta) Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. • https://chromereleases.googleblog.com/2024/12/stable-channel-update-for-desktop_18.html • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

18 Dec 2024 — This could lead to local information disclosure with no additional execution privileges needed. ... This could lead to local information disclosure with no additional execution privileges needed. • https://source.android.com/security/bulletin/pixel/2024-11-01 • CWE-125: Out-of-bounds Read •

CVSS: 5.7EPSS: 0%CPEs: 1EXPL: 0

18 Dec 2024 — IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.9 stores user credentials in plain text which can be read by an authenticated user with access to the pod. • https://www.ibm.com/support/pages/node/7178587 • CWE-256: Plaintext Storage of a Password •

CVSS: 4.4EPSS: 0%CPEs: 1EXPL: 0

18 Dec 2024 — IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.9 could allow a privileged user to obtain highly sensitive user credentials from secret keys that are stored in clear text. • https://www.ibm.com/support/pages/node/7178587 • CWE-256: Plaintext Storage of a Password •