|
249561
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors
|
IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten…
|
CWE-79
Cross-site Scripting
|
CVE-2017-1563
|
2024-11-21 12:22 |
2018-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249562
|
6.8 |
MEDIUM
Physics
|
ibm
|
rational_doors
|
IBM Doors Web Access 9.5 and 9.6 could allow an attacker with physical access to the system to log into the application using previously stored credentials. IBM X-Force ID: 130914.
|
NVD-CWE-noinfo
|
CVE-2017-1545
|
2024-11-21 12:22 |
2018-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249563
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors
|
IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten…
|
CWE-79
Cross-site Scripting
|
CVE-2017-1540
|
2024-11-21 12:22 |
2018-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249564
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors
|
IBM DOORS 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially lead…
|
CWE-79
Cross-site Scripting
|
CVE-2017-1532
|
2024-11-21 12:22 |
2018-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249565
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors
|
IBM Doors Web Access 9.5 and 9.6 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this …
|
CWE-20
Improper Input Validation
|
CVE-2017-1516
|
2024-11-21 12:22 |
2018-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249566
|
4.3 |
MEDIUM
Network
|
ibm
|
rational_doors
|
IBM Doors Web Access 9.5 and 9.6 could allow an authenticated user to obtain sensitive information from HTTP internal server error responses. IBM X-Force ID: 129825.
|
CWE-200
Information Exposure
|
CVE-2017-1515
|
2024-11-21 12:22 |
2018-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249567
|
8.8 |
HIGH
Network
|
ibm
|
business_process_manager
|
IBM Business Process Manager 8.6 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trust…
|
CWE-352
Origin Validation Error
|
CVE-2017-1769
|
2024-11-21 12:22 |
2018-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249568
|
5.6 |
MEDIUM
Network
|
ibm
|
integration_bus
|
IBM Integration Bus 9.0 and 10.0 could allow an attacker that has captured a valid session id to hijack another users session during a small timeframe before the session times out. IBM X-Force ID: 13…
|
CWE-613
Insufficient Session Expiration
|
CVE-2017-1693
|
2024-11-21 12:22 |
2018-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249569
|
5.4 |
MEDIUM
Network
|
ibm
|
curam_social_program_management
|
IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, 7.0.1, and 7.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus …
|
CWE-79
Cross-site Scripting
|
CVE-2017-1740
|
2024-11-21 12:22 |
2018-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249570
|
5.4 |
MEDIUM
Network
|
ibm
|
curam_social_program_management
|
IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, and 7.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alterin…
|
CWE-79
Cross-site Scripting
|
CVE-2017-1739
|
2024-11-21 12:22 |
2018-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|