Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2019-06-13 CVE-2019-0183 Insufficiently Protected Credentials vulnerability in Intel Open Cloud Integrity Tehnology and Openattestation
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-522
3.3
2019-06-13 CVE-2019-0182 Insufficiently Protected Credentials vulnerability in Intel Open Cloud Integrity Tehnology and Openattestation
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-522
3.3
2019-06-13 CVE-2019-0178 Insufficiently Protected Credentials vulnerability in Intel Open Cloud Integrity Tehnology and Openattestation
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially enable information disclosure via local access.
local
high complexity
intel CWE-522
3.6
2019-06-13 CVE-2019-0174 Unspecified vulnerability in Intel products
Logic condition in specific microprocessors may allow an authenticated user to potentially enable partial physical address information disclosure via local access.
local
low complexity
intel
3.3
2019-06-12 CVE-2019-0307 Missing Encryption of Sensitive Data vulnerability in SAP Solution Manager 7.2
Diagnostics Agent in Solution Manager, version 7.2, stores several credentials such as SLD user connection as well as Solman user communication in the SAP Secure Storage file which is not encrypted by default.
low complexity
sap CWE-311
2.4
2019-06-12 CVE-2019-10155 Improper Validation of Integrity Check Value vulnerability in multiple products
The Libreswan Project has found a vulnerability in the processing of IKEv1 informational exchange packets which are encrypted and integrity protected using the established IKE SA encryption and integrity keys, but as a receiver, the integrity check value was not verified.
3.1
2019-06-11 CVE-2019-11334 Authentication Bypass by Capture-replay vulnerability in Tzumi Klic Lock and Klic Smart Padlock Model 5686 Firmware
An authentication bypass in website post requests in the Tzumi Electronics Klic Lock application 1.0.9 for mobile devices allows attackers to access resources (that are not otherwise accessible without proper authentication) via capture-replay.
network
high complexity
tzumi CWE-294
3.7
2019-06-06 CVE-2019-4218 Improper Privilege Management vulnerability in IBM Security Information Queue 1.0.0/1.0.1/1.0.2
IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm CWE-269
3.3
2019-06-06 CVE-2019-4161 Unspecified vulnerability in IBM Security Information Queue 1.0.0/1.0.1/1.0.2
IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 discloses sensitive information to unauthorized users.
local
low complexity
ibm
3.3
2019-06-06 CVE-2019-4048 Improper Privilege Management vulnerability in IBM products
IBM Maximo Asset Management 7.6 could allow a physical user of the system to obtain sensitive information from a previous user of the same machine.
low complexity
ibm CWE-269
2.1