|
266691
|
5.4 |
MEDIUM
Network
|
ibm
|
tririga_application_platform
|
IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.3, and 3.5 before 3.5.0.1 allows remote authenticated users to read or modify arbitrary reports by leveraging an incorrect grant …
|
CWE-284
Improper Access Control
|
CVE-2016-0342
|
2024-11-21 11:41 |
2018-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266692
|
5.4 |
MEDIUM
Network
|
ibm
|
emptoris_sourcing
|
Open redirect vulnerability in IBM Emptoris Sourcing 10.0.0.x before 10.0.0.1_iFix3, 10.0.1.x before 10.0.1.3_iFix3, 10.0.2.x before 10.0.2.8_iFix1, 10.0.4.0 before 10.0.4.0_iFix8, and 10.1.0.0 befor…
|
CWE-601
Open Redirect
|
CVE-2016-0329
|
2024-11-21 11:41 |
2018-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266693
|
7.5 |
HIGH
Network
|
ibm
|
tririga_application_platform
|
IBM TRIRIGA Application Platform before 3.3.2 allows remote attackers to obtain sensitive information via vectors related to granting unauthenticated access to Document Manager. IBM X-Force ID: 11148…
|
CWE-200
Information Exposure
|
CVE-2016-0312
|
2024-11-21 11:41 |
2018-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266694
|
5.4 |
MEDIUM
Network
|
ibm
|
tivoli_business_service_manager
|
Cross-site scripting (XSS) vulnerability in IBM Tivoli Business Service Manager 6.1.0 before 6.1.0-TIV-BSM-FP0004 and 6.1.1 before 6.1.1-TIV-BSM-FP0004 allows remote attackers to inject arbitrary web…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0311
|
2024-11-21 11:41 |
2018-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266695
|
5.4 |
MEDIUM
Network
|
ibm
|
tivoli_integrated_portal
|
Cross-site scripting (XSS) vulnerability in IBM Tivoli Integrated Portal 2.2.0.0 through 2.2.0.15 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-0303
|
2024-11-21 11:41 |
2018-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266696
|
5.4 |
MEDIUM
Network
|
ibm
|
tririga_application_platform
|
IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.3, and 3.5 before 3.5.0.1 might allow remote attackers to access arbitrary JSP pages via vectors related to improper input valida…
|
CWE-20
Improper Input Validation
|
CVE-2016-0300
|
2024-11-21 11:41 |
2018-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266697
|
6.5 |
MEDIUM
Network
|
ibm
|
db2
|
IBM DB2 9.7, 10.1 before FP6, and 10.5 before FP8 on AIX, Linux, HP, Solaris and Windows allow remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a sub…
|
CWE-20
Improper Input Validation
|
CVE-2016-0215
|
2024-11-21 11:41 |
2018-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266698
|
5.4 |
MEDIUM
Network
|
ibm
|
algo_risk_application
|
IBM Algorithmics One-Algo Risk Application (ARA) 4.9.1 through 5.1.0 allows remote authenticated users to conduct clickjacking attacks via unspecified vectors. IBM X-Force ID: 109399.
|
CWE-20
Improper Input Validation
|
CVE-2016-0207
|
2024-11-21 11:41 |
2018-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266699
|
6.5 |
MEDIUM
Network
|
ibm
|
rational_quality_manager rational_requirements_composer rational_doors_next_generation rational_team_concert rational_collaborative_lifecycle_management rational_engineering_lifecycle_…
|
XML external entity (XXE) vulnerability in IBM Rational Team Concert 3.0 before 3.0.1.6 iFix7 Interim Fix 1, 4.0 before 4.0.7 iFix10, 5.0 before 5.0.2 iFix15, and 6.0 before 6.0.1 iFix4 allows remote…
|
CWE-611
XXE
|
CVE-2016-0219
|
2024-11-21 11:41 |
2018-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266700
|
5.4 |
MEDIUM
Network
|
ibm
|
security_identity_manager
|
Cross-site scripting (XSS) vulnerability in IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.0 before 7.0.1-ISS-SIM-FP0001 allows remote authenticated users to inject arbi…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0336
|
2024-11-21 11:41 |
2018-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|