|
270731
|
3.5 |
LOW
Adjacent
|
ibm
|
rational_rhapsody_design_manager rational_quality_manager rational_requirements_composer rational_engineering_lifecycle_manager rational_software_architect_design_manager rational_coll…
|
Jazz Team Server in Jazz Foundation in IBM Rational Collaborative Lifecycle Management (CLM) 3.x and 4.x before 4.0.7 IF9, 5.x before 5.0.2 IF9, and 6.x before 6.0.1; Rational Quality Manager (RQM) 3…
|
CWE-200
Information Exposure
|
CVE-2015-4962
|
2024-11-21 11:32 |
2016-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270732
|
3.3 |
LOW
Local
|
ibm
|
rational_quality_manager rational_requirements_composer rational_engineering_lifecycle_manager rational_collaborative_lifecycle_management rational_doors_next_generation rational_rhaps…
|
Rational LifeCycle Project Administration in Jazz Team Server in IBM Rational Collaborative Lifecycle Management (CLM) 3.x and 4.x before 4.0.7 IF9, 5.x before 5.0.2 IF9, and 6.x before 6.0.1; Ration…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-4946
|
2024-11-21 11:32 |
2016-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270733
|
4.3 |
MEDIUM
Network
|
ibm
|
infosphere_biginsights
|
The Big SQL component in IBM InfoSphere BigInsights 3.0, 3.0.0.1, 3.0.0.2, and 4.0 allows remote authenticated users to bypass intended access restrictions and truncate arbitrary tables via unspecifi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-5020
|
2024-11-21 11:32 |
2016-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270734
|
8.0 |
HIGH
Network
|
ibm
|
security_access_manager_for_web_8.0_firmware security_access_manager_for_web_7.0_firmware security_access_manager_9.0_firmware
|
IBM Security Access Manager for Web 7.0.0 before FP19 and 8.0 before 8.0.1.3 IF3, and Security Access Manager 9.0 before 9.0.0.0 IF1, allows remote authenticated users to execute arbitrary OS command…
|
CWE-78
OS Command
|
CVE-2015-5018
|
2024-11-21 11:32 |
2016-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270735
|
5.1 |
MEDIUM
Local
|
ibm
|
rational_clearquest
|
IBM Rational ClearQuest 7.1.x and 8.0.0.x before 8.0.0.17 and 8.0.1.x before 8.0.1.10 allows local users to spoof database servers and discover credentials via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2015-4996
|
2024-11-21 11:32 |
2016-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270736
|
4.0 |
MEDIUM
Local
|
ibm
|
tealeaf_customer_experience
|
The portal in IBM Tealeaf Customer Experience before 8.7.1.8818, 8.8 before 8.8.0.9026, 9.0.0, 9.0.0A, 9.0.1 before 9.0.1.1083, 9.0.1A before 9.0.1.5073, 9.0.2 before 9.0.2.1095, and 9.0.2A before 9.…
|
CWE-200
Information Exposure
|
CVE-2015-4990
|
2024-11-21 11:32 |
2016-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270737
|
3.7 |
LOW
Network
|
ibm
|
tealeaf_customer_experience
|
The portal in IBM Tealeaf Customer Experience before 8.7.1.8814, 8.8 before 8.8.0.9026, 9.0.0, 9.0.0A, 9.0.1 before 9.0.1.1083, 9.0.1A before 9.0.1.5073, 9.0.2 before 9.0.2.1095, and 9.0.2A before 9.…
|
CWE-200
Information Exposure
|
CVE-2015-4989
|
2024-11-21 11:32 |
2016-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270738
|
5.4 |
MEDIUM
Network
|
ibm
|
openpages_grc_platform
|
SQL injection vulnerability in the API in IBM OpenPages GRC Platform 7.0 before 7.0.0.4 IF3 and 7.1 before 7.1.0.1 IF6 allows remote authenticated users to execute arbitrary SQL commands via unspecif…
|
CWE-89
SQL Injection
|
CVE-2015-5049
|
2024-11-21 11:32 |
2016-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270739
|
5.3 |
MEDIUM
Network
|
ibm
|
websphere_mq_light
|
IBM WebSphere MQ Light 1.x before 1.0.2 allows remote attackers to cause a denial of service (MQXR service crash) via a series of connect and disconnect actions, a different vulnerability than CVE-20…
|
CWE-17
Code
|
CVE-2015-4943
|
2024-11-21 11:32 |
2016-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270740
|
5.3 |
MEDIUM
Network
|
ibm
|
websphere_mq_light
|
IBM WebSphere MQ Light 1.x before 1.0.2 mishandles abbreviated TLS handshakes, which allows remote attackers to cause a denial of service (MQXR service crash) via unspecified vectors.
|
CWE-17
Code
|
CVE-2015-4941
|
2024-11-21 11:32 |
2016-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|