|
266271
|
7.7 |
HIGH
Network
|
ibm
|
tririga_application_platform
|
IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote authenticated users to conduct server-side request forgery (SSRF) attacks, and trigger ne…
|
NVD-CWE-Other
|
CVE-2016-0362
|
2024-11-21 11:41 |
2016-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266272
|
6.5 |
MEDIUM
Network
|
ibm
|
business_process_manager
|
IBM Business Process Manager 8.5.6 through 8.5.6.2 and 8.5.7 before 8.5.7.CF201606 allows remote authenticated users to bypass intended access restrictions and update process-instance variables via a…
|
CWE-284
Improper Access Control
|
CVE-2016-0349
|
2024-11-21 11:41 |
2016-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266273
|
5.4 |
MEDIUM
Network
|
ibm
|
connections
|
Cross-site scripting (XSS) vulnerability in IBM Connections 4.0 through CR4, 4.5 through CR5, 5.0 through CR4, and 5.5 before CR1 allows remote authenticated users to inject arbitrary web script or H…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0322
|
2024-11-21 11:41 |
2016-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266274
|
8.1 |
HIGH
Network
|
ibm
|
domino
|
The Java Console in IBM Domino 8.5.x before 8.5.3 FP6 IF13 and 9.x before 9.0.1 FP6, when a certain unsupported configuration involving UNC share pathnames is used, allows remote attackers to bypass …
|
CWE-284
Improper Access Control
|
CVE-2016-0304
|
2024-11-21 11:41 |
2016-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266275
|
6.5 |
MEDIUM
Network
|
ibm
|
security_guardium
|
Directory traversal vulnerability in IBM Security Guardium Database Activity Monitor 10 before 10.0p100 allows remote authenticated users to read arbitrary files via a crafted URL.
|
CWE-200
Information Exposure
|
CVE-2016-0298
|
2024-11-21 11:41 |
2016-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266276
|
7.7 |
HIGH
Network
|
ibm
|
urbancode_deploy
|
IBM UrbanCode Deploy 6.0.x before 6.0.1.13, 6.1.x before 6.1.3.3, and 6.2.x before 6.2.1.1 allows remote authenticated users to obtain sensitive cleartext secure-property information via (1) the serv…
|
CWE-200
Information Exposure
|
CVE-2016-0267
|
2024-11-21 11:41 |
2016-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266277
|
7.0 |
HIGH
Local
|
ibm
|
general_parallel_file_system_storage_server spectrum_scale
|
IBM Spectrum Scale 4.1 before 4.1.1.5 and 4.2 before 4.2.0.2 and General Parallel File System 3.5 before 3.5.0.30 allow local users to gain privileges or cause a denial of service via a crafted mmapp…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0263
|
2024-11-21 11:41 |
2016-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266278
|
7.5 |
HIGH
Network
|
ibm
|
websphere_mq
|
Memory leak in queue-manager agents in IBM WebSphere MQ 8.x before 8.0.0.5 allows remote attackers to cause a denial of service (heap memory consumption) by triggering many errors.
|
CWE-399
Resource Management Errors
|
CVE-2016-0260
|
2024-11-21 11:41 |
2016-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266279
|
8.8 |
HIGH
Network
|
ibm
|
marketing_platform
|
SQL injection vulnerability in IBM Marketing Platform 8.5.x, 8.6.x, and 9.x before 9.1.2.2 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2016-0233
|
2024-11-21 11:41 |
2016-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266280
|
6.1 |
MEDIUM
Network
|
ibm
|
marketing_platform
|
Cross-site scripting (XSS) vulnerability in IBM Marketing Platform 8.6.x and 9.x before 9.1.2.2 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
|
CWE-79
Cross-site Scripting
|
CVE-2016-0229
|
2024-11-21 11:41 |
2016-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|