Vulnerabilities > Unisys > Low

DATE CVE VULNERABILITY TITLE RISK
2021-04-27 CVE-2020-35542 Cross-site Scripting vulnerability in Unisys Data Exchange Management Studio
Unisys Data Exchange Management Studio through 5.0.34 doesn't sanitize the input to a HTML document field.
network
unisys CWE-79
3.5
2021-03-18 CVE-2021-3141 Insufficiently Protected Credentials vulnerability in Unisys Stealth
In Unisys Stealth (core) before 6.0.025.0, the Keycloak password is stored in a recoverable format that might be accessible by a local attacker, who could gain access to the Management Server and change the Stealth configuration.
local
low complexity
unisys CWE-522
2.1
2020-10-01 CVE-2020-24620 Use of Hard-coded Credentials vulnerability in Unisys Stealth
Unisys Stealth(core) before 4.0.134 stores passwords in a recoverable format.
local
low complexity
unisys CWE-798
2.1
2018-05-30 CVE-2018-7534 Key Management Errors vulnerability in Unisys Stealth Authorization Server
In Stealth Authorization Server before 3.3.017.0 in Unisys Stealth Solution, an encryption key may be left in memory.
local
unisys CWE-320
1.9