## Summary There is a vulnerability in the Google protobuf-java library used by IBM WebSphere Application Server Liberty with the grpc-1.0 or grpcClient-1.0 feature enabled. This has been addressed. # ...
Continue ReadingFebruary 28, 2023
Dell PowerScale OneFS 9.4.0.x contains an incorrect default permissions vulnerability. A local malicious user could potentially exploit this vulnerability to overwrite arbitrary files causing denial o ...
Continue ReadingFebruary 28, 2023
Cross-site request forgery is facilitated by OpenCATS failure to require CSRF tokens in POST requests. An attacker can exploit this issue by creating a dummy page that executes Javascript in an authen ...
Continue ReadingFebruary 28, 2023
An open redirect vulnerability exposes OpenCATS to template injection due to improper validation of user-supplied GET parameters.Read More ...
Continue ReadingFebruary 28, 2023
Dell PowerScale nodes A200, A2000, H400, H500, H600, H5600, F800, F810 integrated hardware management software contains an uncontrolled resource consumption vulnerability. This may allow an unauthenti ...
Continue ReadingFebruary 28, 2023
Improper neutralization of input during web page generation allows an authenticated attacker with access to a restricted account to submit malicious Javascript as the description for a calendar event, ...
Continue ReadingFebruary 28, 2023
Relative Path Traversal vulnerability in ForgeRock Access Management Web Policy Agent allows Authentication Bypass.This issue affects Access Management Web Policy Agent: through 5.10.1.Read More ...
Continue ReadingFebruary 28, 2023
Relative Path Traversal vulnerability in ForgeRock Access Management Java Policy Agent allows Authentication Bypass.This issue affects Access Management Java Policy Agent: from 1.0.0 through 5.10.1.Re ...
Continue ReadingFebruary 28, 2023
Back to Main