Page 532 of 10626 results (0.022 seconds)

CVSS: 5.3EPSS: 0%CPEs: 5EXPL: 0

IBM WebSphere Application Server 7.0, 8.0, 8.5, 9.0, and IBM WebSphere Application Server Liberty, when configured to communicate with the Web Server Plug-ins for IBM WebSphere Application Server, could allow an authenticated user to conduct spoofing attacks. A man-in-the-middle attacker could exploit this vulnerability using a certificate issued by a trusted authority to obtain sensitive information. IBM X-Force ID: 235069. • https://exchange.xforce.ibmcloud.com/vulnerabilities/235069 https://www.ibm.com/support/pages/node/6987779 • CWE-295: Improper Certificate Validation •

CVSS: 9.3EPSS: 0%CPEs: 21EXPL: 0

Sensitive information disclosure due to improper authentication. • https://security-advisory.acronis.com/advisories/SEC-3855 • CWE-287: Improper Authentication •

CVSS: 9.3EPSS: 0%CPEs: 21EXPL: 1

Code execution and sensitive information disclosure due to excessive privileges assigned to Acronis Agent. • https://herolab.usd.de/security-advisories/usd-2022-0008 https://security-advisory.acronis.com/advisories/SEC-4092 • CWE-269: Improper Privilege Management •

CVSS: 7.3EPSS: 0%CPEs: 204EXPL: 0

Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •

CVSS: 8.2EPSS: 0%CPEs: 26EXPL: 0

Information disclosure due to buffer over-read in Modem while parsing DNS hostname. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •