|
266251
|
6.5 |
MEDIUM
Network
|
ibm
|
jazz_reporting_service
|
The Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allow remote authenticated users to conduct clickjacki…
|
NVD-CWE-noinfo
|
CVE-2016-0314
|
2024-11-21 11:41 |
2016-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266252
|
5.4 |
MEDIUM
Network
|
ibm
|
jazz_reporting_service
|
Cross-site scripting (XSS) vulnerability in the Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allows rem…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0313
|
2024-11-21 11:41 |
2016-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266253
|
7.8 |
HIGH
Local
|
ibm
|
i_access
|
IBM i Access 7.1 on Windows allows local users to discover registry passwords via unspecified vectors.
|
CWE-200 CWE-254
Information Exposure 7PK - Security Features
|
CVE-2016-0287
|
2024-11-21 11:41 |
2016-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266254
|
8.2 |
HIGH
Local
|
ibm
|
urbancode_deploy
|
The agents in IBM UrbanCode Deploy 6.x before 6.0.1.14, 6.1.x before 6.1.3.3, and 6.2.x before 6.2.1.1 do not verify a server's identity in a JMS session or an HTTP session, which allows local users …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0271
|
2024-11-21 11:41 |
2016-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266255
|
5.1 |
MEDIUM
Local
|
ibm
|
control_center sterling_control_center
|
IBM Control Center 6.x before 6.0.0.1 iFix06 and Sterling Control Center 5.4.x before 5.4.2.1 iFix09 allow local users to decrypt the master key via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-0252
|
2024-11-21 11:41 |
2016-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266256
|
5.3 |
MEDIUM
Network
|
ibm
|
websphere_application_server
|
Admin Center in IBM WebSphere Application Server (WAS) 8.5.5.2 through 8.5.5.9 Liberty before Liberty Fix Pack 16.0.0.2 allows remote attackers to obtain sensitive information via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-0389
|
2024-11-21 11:41 |
2016-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266257
|
6.8 |
MEDIUM
Physics
|
ibm
|
hardware_management_console
|
IBM Power Hardware Management Console (HMC) 7.3 through 7.3.0 SP7, 7.9 through 7.9.0 SP3, 8.1 through 8.1.0 SP3, 8.2 through 8.2.0 SP2, 8.3 through 8.3.0 SP2, 8.4 through 8.4.0 SP1, and 8.5.0 allows …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0230
|
2024-11-21 11:41 |
2016-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266258
|
6.1 |
MEDIUM
Network
|
ibm
|
websphere_application_server
|
CRLF injection vulnerability in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.43, 8.0 before 8.0.0.13, 8.5 Full before 8.5.5.10, and 8.5 Liberty before Liberty Fix Pack 16.0.0.2 allows remo…
|
NVD-CWE-Other
|
CVE-2016-0359
|
2024-11-21 11:41 |
2016-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266259
|
5.4 |
MEDIUM
Network
|
ibm
|
cognos_business_intelligence
|
Cross-site scripting (XSS) vulnerability in IBM Cognos Business Intelligence 10.2 before IF20, 10.2.1 before IF17, 10.2.1.1 before IF16, 10.2.2 before IF12, and 10.1.1 before IF19 allows remote authe…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0346
|
2024-11-21 11:41 |
2016-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266260
|
5.4 |
MEDIUM
Network
|
ibm
|
cognos_business_intelligence
|
Cross-site scripting (XSS) vulnerability in IBM Cognos TM1, as used in IBM Cognos Business Intelligence 10.2 before IF20, 10.2.1 before IF17, 10.2.1.1 before IF16, 10.2.2 before IF12, and 10.1.1 befo…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0221
|
2024-11-21 11:41 |
2016-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|