Page 4 of 12526 results (0.014 seconds)

CVSS: 5.9EPSS: 0%CPEs: 1EXPL: 0

29 Jan 2025 — IBM Aspera Faspex 5.0.0 through 5.0.10 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. • https://www.ibm.com/support/pages/node/7181814 • CWE-521: Weak Password Requirements •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

29 Jan 2025 — (Chromium security severity: Medium) Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. • https://chromereleases.googleblog.com/2025/01/stable-channel-update-for-desktop_28.html • CWE-416: Use After Free •

CVSS: 4.6EPSS: 0%CPEs: 1EXPL: 0

29 Jan 2025 — IBM Security Verify Governance 10.0.2 Identity Manager uses a one-way cryptographic hash against an input that should not be reversible, such as a password, but the product does not also use a salt as part of the input. • https://www.ibm.com/support/pages/node/7172200 • CWE-759: Use of a One-Way Hash without a Salt •

CVSS: 6.2EPSS: 0%CPEs: 1EXPL: 0

28 Jan 2025 — In BnAudioPolicyService::onTransact of IAudioPolicyService.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. • https://source.android.com/security/bulletin/pixel/2018-06-01 • CWE-908: Use of Uninitialized Resource •

CVSS: 5.7EPSS: 0%CPEs: 1EXPL: 0

28 Jan 2025 — This could lead to remote information disclosure with no additional execution privileges needed. • https://source.android.com/security/bulletin/pixel/2018-05-01 • CWE-125: Out-of-bounds Read CWE-190: Integer Overflow or Wraparound •

CVSS: 5.7EPSS: 0%CPEs: 1EXPL: 0

28 Jan 2025 — This could lead to remote information disclosure with no additional execution privileges needed. • https://source.android.com/security/bulletin/pixel/2018-05-01 • CWE-125: Out-of-bounds Read •

CVSS: 7.8EPSS: 0%CPEs: -EXPL: 0

28 Jan 2025 — A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, or data tampering. • https://nvidia.custhelp.com/app/answers/detail/a_id/5614 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVSS: 5.5EPSS: 0%CPEs: 11EXPL: 0

28 Jan 2025 — A successful exploit of this vulnerability might lead to information disclosure. • https://nvidia.custhelp.com/app/answers/detail/a_id/5614 • CWE-459: Incomplete Cleanup •

CVSS: 3.3EPSS: 0%CPEs: 11EXPL: 0

28 Jan 2025 — A successful exploit of this vulnerability might lead to limited information disclosure. • https://nvidia.custhelp.com/app/answers/detail/a_id/5614 • CWE-125: Out-of-bounds Read •

CVSS: 7.1EPSS: 0%CPEs: 11EXPL: 0

28 Jan 2025 — NVIDIA GPU display driver for Windows and Linux contains a vulnerability where data is written past the end or before the beginning of a buffer. A successful exploit of this vulnerability might lead to information disclosure, denial of service, or data tampering. • https://nvidia.custhelp.com/app/answers/detail/a_id/5614 • CWE-787: Out-of-bounds Write •