Vulnerabilidades em IBM Corporation
288 resultadosCVE-2016-0217—IBM Cognos Business Intelligence and IBM Cognos Analytics are vulnerable to stored cross-site scripting, caused by improper validation of usEPSS 0.7%CVE-2016-0218—IBM Cognos Business Intelligence and IBM Cognos Analytics are vulnerable to cross-site scripting, caused by improper validation of user-suppEPSS 0.7%CVE-2016-0265—IBM Campaign is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit thEPSS 0.7%CVE-2016-6077—IBM Cognos Disclosure Management 10.2 could allow a malicious attacker to execute commands as a lower privileged user that opens a maliciousEPSS 0.7%CVE-2016-5919—IBM Security Access Manager for Web 7.0.0, 8.0.0, and 9.0.0 uses weaker than expected cryptographic algorithms that could allow an attacker EPSS 0.7%CVE-2016-9735—IBM Jazz Foundation could allow an authenticated user to obtain sensitive information from stack traces. IBM X-Force ID: 119781,EPSS 0.7%CVE-2016-6060—An undisclosed vulnerability in IBM Rational DOORS Next Generation 4.0, 5.0, and 6.0 could allow a JazzGuest user to see project names. IBM EPSS 0.7%CVE-2016-8934—IBM WebSphere Application Server is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code iEPSS 0.7%CVE-2017-1171—The IBM TRIRIGA Application Platform 3.3, 3,4, and 3,5 contain a vulnerability that could allow an authenticated user to execute ApplicationEPSS 0.7%CVE-2016-8973—IBM Rhapsody DM 4.0, 5.0 and 6.0 contains an undisclosed vulnerability that may allow an authenticated user to upload infected malicious filEPSS 0.7%CVE-2016-0308—IBM Connections 5.5 and earlier is vulnerable to possible link manipulation attack that could result in the display of inappropriate backgroEPSS 0.7%CVE-2016-9697—An unspecified vulnerability in IBM Rhapsody DM 4.0, 5.0, and 6.0 could allow an attacker to perform a JSON Hijacking Attack. A JSON HijackiEPSS 0.7%CVE-2016-0305—IBM Connections is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploitEPSS 0.7%CVE-2016-0228—IBM Marketing Platform 10.0 could allow a remote attacker to conduct phishing attacks, caused by an open redirect vulnerability in various sEPSS 0.6%CVE-2017-1128—IBM Rational DOORS Next Generation 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitraEPSS 0.6%CVE-2017-1127—IBM Rational DOORS Next Generation 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrarEPSS 0.6%CVE-2016-8911—IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to hijack the clicking action of the victim. By persuading a viEPSS 0.6%CVE-2016-5990—IBM Security Privileged Identity Manager Virtual Appliance allows an authenticated user to upload malicious files that would be automaticallEPSS 0.6%CVE-2016-5897—IBM Jazz Reporting Service (JRS) is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, wouEPSS 0.6%CVE-2016-9696—IBM Rhapsody DM 4.0, 5.0, and 6.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, woEPSS 0.6%