CVE-2024-21000
- EPSS 0.19%
- Published 16.04.2024 22:15:13
- Last modified 27.11.2024 16:36:11
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker wit...
CVE-2024-21002
- EPSS 0.05%
- Published 16.04.2024 22:15:13
- Last modified 29.05.2025 19:22:07
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported versions that are affected are Oracle Java SE: 8u401; Oracle GraalVM Enterprise Edition: 20.3.13 and 21.3.9. Difficult t...
CVE-2024-20993
- EPSS 0.15%
- Published 16.04.2024 22:15:12
- Last modified 27.11.2024 16:36:44
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network a...
CVE-2024-20994
- EPSS 0.41%
- Published 16.04.2024 22:15:12
- Last modified 27.11.2024 16:36:42
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows low privileged attacker with...
CVE-2023-30996
- EPSS 0.07%
- Published 26.02.2024 16:27:46
- Last modified 17.12.2024 19:32:35
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 could be vulnerable to information leakage due to unverified sources in messages sent between Windows objects of different origins. IBM X-Force ID: 254290.
CVE-2023-32344
- EPSS 0.03%
- Published 26.02.2024 16:27:46
- Last modified 17.12.2024 18:55:38
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to form action hijacking where it is possible to modify the form action to reference an arbitrary path. IBM X-Force ID: 255898.
CVE-2023-38359
- EPSS 0.09%
- Published 26.02.2024 16:27:46
- Last modified 17.12.2024 18:55:23
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclo...
CVE-2023-43051
- EPSS 0.22%
- Published 26.02.2024 16:27:46
- Last modified 17.12.2024 18:08:08
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclo...
CVE-2022-34357
- EPSS 0.07%
- Published 26.02.2024 16:27:45
- Last modified 17.12.2024 16:49:34
IBM Cognos Analytics Mobile Server 11.1.7, 11.2.4, and 12.0.0 is vulnerable to Denial of Service due to due to weak or absence of rate limiting. By making unlimited http requests, it is possible for a single user to exhaust server resources over a pe...
CVE-2024-20981
- EPSS 0.16%
- Published 16.01.2024 22:15:45
- Last modified 20.06.2025 18:15:27
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access ...