|
257001
|
4.2 |
MEDIUM
Network
|
ibm
|
qradar_security_information_and_event_manager
|
IBM QRadar 7.2 and 7.3 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. IBM X-Force ID: 119737.
|
CWE-284
Improper Access Control
|
CVE-2016-9722
|
2024-11-21 12:01 |
2018-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257002
|
5.4 |
MEDIUM
Network
|
ibm
|
curam_social_program_management
|
IBM Curam Social Program Management 6.0, 6.1, 6.2 and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the int…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9732
|
2024-11-21 12:01 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257003
|
5.7 |
MEDIUM
Network
|
ibm
|
infosphere_master_data_management_server
|
IBM InfoSphere Master Data Management Server 10.1. 11.0. 11.3, 11.4, 11.5, and 11.6 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malici…
|
CWE-20
Improper Input Validation
|
CVE-2016-9719
|
2024-11-21 12:01 |
2017-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257004
|
5.4 |
MEDIUM
Network
|
ibm
|
infosphere_master_data_management_server
|
IBM InfoSphere Master Data Management Server 10.1. 11.0. 11.3, 11.4, 11.5, and 11.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the We…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9718
|
2024-11-21 12:01 |
2017-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257005
|
6.5 |
MEDIUM
Network
|
ibm
|
infosphere_master_data_management_server
|
HTTP Parameter Override is identified in the IBM Infosphere Master Data Management (MDM) 10.1. 11.0. 11.3, 11.4, 11.5, and 11.6 product. It enables attackers by exposing the presence of duplicated pa…
|
CWE-20
Improper Input Validation
|
CVE-2016-9717
|
2024-11-21 12:01 |
2017-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257006
|
8.8 |
HIGH
Network
|
ibm
|
infosphere_master_data_management_server
|
IBM InfoSphere Master Data Management Server 11.0, 11.3, 11.4, 11.5, and 11.6 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions t…
|
CWE-352
Origin Validation Error
|
CVE-2016-9716
|
2024-11-21 12:01 |
2017-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257007
|
5.4 |
MEDIUM
Network
|
ibm
|
infosphere_master_data_management_server
|
IBM InfoSphere Master Data Management Server 11.0, 11.3, 11.4, 11.5, and 11.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI t…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9715
|
2024-11-21 12:01 |
2017-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257008
|
8.8 |
HIGH
Network
|
ibm
|
infosphere_master_data_management_server
|
IBM InfoSphere Master Data Management Server 10.1, 11.0, 11.3, 11.4, 11.5, and 11.6 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized act…
|
CWE-352
Origin Validation Error
|
CVE-2016-9714
|
2024-11-21 12:01 |
2017-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257009
|
4.3 |
MEDIUM
Network
|
ibm
|
rational_collaborative_lifecycle_management rational_quality_manager rational_team_concert rational_doors_next_generation rational_engineering_lifecycle_manager rational_rhapsody_desig…
|
IBM Jazz Foundation could allow an authenticated attacker to obtain sensitive information from error message stack traces. IBM X-Force ID: 119528.
|
CWE-200
Information Exposure
|
CVE-2016-9700
|
2024-11-21 12:01 |
2017-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257010
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_team_concert rational_collaborative_lifecycle_management
|
IBM Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionalit…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9746
|
2024-11-21 12:01 |
2017-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|