Medium - CVE-2024-28786 - IBM QRadar SIEM 7.5 transmits sensitive or...
IBM QRadar SIEM 7.5 transmits sensitive or security-critical data in cleartext in a communication channel that could be obtained by an unauthorized actor using man in the middle techniques.
NA - CVE-2022-3365 - Due to reliance on a trivial substitution...
Due to reliance on a trivial substitution cipher, sent in cleartext, and the reliance on a default password when the user does not set a password, the Remote Mouse Server by Emote Interactive can...
Medium - CVE-2023-50316 - IBM Sterling B2B Integrator 6.0.0.0 through...
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the...
NA - CVE-2024-12647 - Buffer overflow in CPCA font download...
Buffer overflow in CPCA font download processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product...
NA - CVE-2024-12648 - Buffer overflow in TIFF data EXIF tag...
Buffer overflow in TIFF data EXIF tag processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product...
NA - CVE-2024-12649 - Buffer overflow in XPS data font processing of...
Buffer overflow in XPS data font processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being...
Medium - CVE-2024-27263 - IBM Sterling B2B Integrator 6.0.0.0 through...
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to obtain sensitive information from the dashboard UI using man in the middle...
Medium - CVE-2024-22315 - IBM Fusion and IBM Fusion HCI 2.3.0 through...
IBM Fusion and IBM Fusion HCI 2.3.0 through 2.8.2 is vulnerable to insecure network connection by allowing an attacker who gains access to a Fusion container to establish an external network...
NA - CVE-2024-45336 - The HTTP client drops sensitive headers after...
The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that...
NA - CVE-2024-45339 - When logs are written to a widely-writable...
When logs are written to a widely-writable directory (the default), an unprivileged attacker may predict a privileged process's log file path and pre-create a symbolic link to a sensitive file...