Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2021-02-04 CVE-2021-25227 Resource Exhaustion vulnerability in Trendmicro Antivirus
Trend Micro Antivirus for Mac 2021 (Consumer) is vulnerable to a memory exhaustion vulnerability that could lead to disabling all the scanning functionality within the application.
local
low complexity
trendmicro CWE-400
3.3
2021-02-04 CVE-2021-1354 Unspecified vulnerability in Cisco Unified Computing System Central Software
A vulnerability in the certificate registration process of Cisco Unified Computing System (UCS) Central Software could allow an authenticated, adjacent attacker to register a rogue Cisco Unified Computing System Manager (UCSM).
low complexity
cisco
3.5
2021-02-03 CVE-2020-9389 Information Exposure Through Discrepancy vulnerability in Squaredup 4.6
A username enumeration issue was discovered in SquaredUp before version 4.6.0.
network
high complexity
squaredup CWE-203
3.7
2021-02-03 CVE-2021-23331 Unspecified vulnerability in Squareup Connect Java Software Development KIT
This affects all versions of package com.squareup:connect.
local
low complexity
squareup
3.3
2021-02-03 CVE-2020-8589 Unspecified vulnerability in Netapp Clustered Data Ontap
Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15 are susceptible to a vulnerability which could allow unauthorized tenant users to discover the names of other Storage Virtual Machines (SVMs) and filenames on those SVMs.
low complexity
netapp
3.5
2021-02-03 CVE-2020-8588 Unspecified vulnerability in Netapp Clustered Data Ontap
Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15 are susceptible to a vulnerability which could allow unauthorized tenant users to discover the existence of data on other Storage Virtual Machines (SVMs).
low complexity
netapp
3.5
2021-02-03 CVE-2021-25775 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2020.2.1, the server admin could create and see access tokens for any other users.
network
low complexity
jetbrains
3.8
2021-02-03 CVE-2021-25755 Unspecified vulnerability in Jetbrains Code With ME
In JetBrains Code With Me before 2020.3, an attacker on the local network, knowing a session ID, could get access to the encrypted traffic.
local
high complexity
jetbrains
2.5
2021-02-01 CVE-2021-3349 Insufficient Verification of Data Authenticity vulnerability in Gnome Evolution
GNOME Evolution through 3.38.3 produces a "Valid signature" message for an unknown identifier on a previously trusted key because Evolution does not retrieve enough information from the GnuPG API.
local
low complexity
gnome CWE-345
3.3
2021-01-27 CVE-2020-4787 Server-Side Request Forgery (SSRF) vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 is vulnerable to server side request forgery (SSRF).
local
low complexity
ibm CWE-918
2.3