Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2020-11-17 CVE-2020-13353 Insufficient Session Expiration vulnerability in Gitlab Gitaly
When importing repos via URL, one time use git credentials were persisted beyond the expected time window in Gitaly 1.79.0 or above.
local
low complexity
gitlab CWE-613
3.2
2020-11-16 CVE-2020-24366 Unspecified vulnerability in Jetbrains Youtrack
Sensitive information could be disclosed in the JetBrains YouTrack application before 2020.2.0 for Android via application backups.
local
low complexity
jetbrains
3.3
2020-11-16 CVE-2019-19563 Unspecified vulnerability in Harman Hermes 2.1
A misconfiguration in the debug interface in Mercedes-Benz HERMES 2.1 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
low complexity
harman
2.4
2020-11-16 CVE-2019-19561 Insecure Storage of Sensitive Information vulnerability in Harman Hermes 1.5
A misconfiguration in the debug interface in Mercedes-Benz HERMES 1.5 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
low complexity
harman CWE-922
2.4
2020-11-16 CVE-2019-19557 Insecure Storage of Sensitive Information vulnerability in Harman Hermes 1.0
A misconfiguration in the debug interface in Mercedes-Benz HERMES 1 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
low complexity
harman CWE-922
2.4
2020-11-13 CVE-2020-4886 Insecure Storage of Sensitive Information vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 stores sensitive information in the browser's history that could be obtained by a user who has access to the same system.
local
low complexity
ibm CWE-922
3.3
2020-11-12 CVE-2020-2048 Information Exposure Through Log Files vulnerability in Paloaltonetworks Pan-Os
An information exposure through log file vulnerability exists where the password for the configured system proxy server for a PAN-OS appliance may be displayed in cleartext when using the CLI in Palo Alto Networks PAN-OS software.
local
low complexity
paloaltonetworks CWE-532
3.3
2020-11-11 CVE-2020-26220 Unspecified vulnerability in Touchbase.Ai Project Touchbase.Ai 1.1.0
toucbase.ai before version 2.0 leaks information by not stripping exif data from images.
network
low complexity
touchbase-ai-project
3.5
2020-11-11 CVE-2020-8352 Unspecified vulnerability in Lenovo products
In some Lenovo Desktop models, the Configuration Change Detection BIOS setting failed to detect SATA configuration changes.
low complexity
lenovo
2.4
2020-11-11 CVE-2020-16126 Unspecified vulnerability in Freedesktop Accountsservice
An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, improperly dropped the ruid, allowing untrusted users to send signals to AccountService, thus stopping it from handling D-Bus messages in a timely fashion.
local
low complexity
freedesktop
3.3