|
283831
|
- |
|
ibm
|
security_access_manager_for_enterprise_single_sign-on
|
Cross-site scripting (XSS) vulnerability in the IMS server before Ifix 6 in IBM Security Access Manager for Enterprise Single Sign-On (ISAM ESSO) 8.2 allows remote attackers to inject arbitrary web s…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5421
|
2024-11-21 10:57 |
2013-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283832
|
- |
|
ibm
|
sterling_b2b_integrator sterling_file_gateway
|
IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 do not invalidate a session upon a logout action, which allows remote attackers to bypass authentication by leveraging an unattended work…
|
CWE-287
Improper Authentication
|
CVE-2013-5413
|
2024-11-21 10:57 |
2013-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283833
|
- |
|
ibm
|
sterling_b2b_integrator sterling_file_gateway
|
IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 allow remote attackers to inject links and trigger unintended navigation or actions via unspecified vectors.
|
CWE-20
Improper Input Validation
|
CVE-2013-5411
|
2024-11-21 10:57 |
2013-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283834
|
- |
|
ibm
|
sterling_b2b_integrator sterling_file_gateway
|
Multiple SQL injection vulnerabilities in IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2013-5409
|
2024-11-21 10:57 |
2013-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283835
|
- |
|
ibm
|
sterling_b2b_integrator sterling_file_gateway
|
IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 do not properly restrict use of FRAME elements, which allows remote authenticated users to bypass intended access restrictions or obtain …
|
CWE-20
Improper Input Validation
|
CVE-2013-5407
|
2024-11-21 10:57 |
2013-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283836
|
- |
|
ibm
|
sterling_b2b_integrator sterling_file_gateway
|
Multiple cross-site scripting (XSS) vulnerabilities in IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 allow remote authenticated users to inject arbitrary web script or HTML via unspec…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5406
|
2024-11-21 10:57 |
2013-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283837
|
- |
|
ibm
|
sterling_b2b_integrator sterling_file_gateway
|
Multiple cross-site scripting (XSS) vulnerabilities in IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 allow remote authenticated users to inject arbitrary web script or HTML via unspec…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5405
|
2024-11-21 10:57 |
2013-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283838
|
- |
|
ibm
|
content_navigator
|
IBM/ECMClient/configure/explodedformat/navigator/header.jsp in IBM Content Navigator 2.0.0, 2.0.1 before 2.0.1.2-ICN-FP002, and 2.0.2 before 2.0.2.1-ICN-FP001 allows remote attackers to conduct click…
|
CWE-20
Improper Input Validation
|
CVE-2013-5462
|
2024-11-21 10:57 |
2013-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283839
|
- |
|
ibm
|
filenet_business_process_framework
|
IBM FileNet Business Process Framework 4.1.0 allows remote authenticated users to read arbitrary files or send TCP requests to intranet servers via XML data containing an external entity declaration …
|
CWE-200
Information Exposure
|
CVE-2013-5452
|
2024-11-21 10:57 |
2013-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283840
|
- |
|
ibm
|
infosphere_master_data_management_server_for_product_information_management infosphere_master_data_management_collaboration_server
|
Session fixation vulnerability in IBM InfoSphere Master Data Management - Collaborative Edition 10.x before 10.1 IF5 and 11.0 before IF1 and InfoSphere Master Data Management Server for Product Infor…
|
CWE-287
Improper Authentication
|
CVE-2013-5426
|
2024-11-21 10:57 |
2013-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|