Vulnerabilities > IBM > Content Navigator > 3.0.11

DATE CVE VULNERABILITY TITLE RISK
2023-10-04 CVE-2023-40684 Cross-site Scripting vulnerability in IBM Content Navigator 3.0.11/3.0.13/3.0.14
IBM Content Navigator 3.0.11, 3.0.13, and 3.0.14 with IBM Daeja ViewOne Virtual is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2022-12-07 CVE-2022-43581 Missing Authorization vulnerability in IBM Content Navigator
IBM Content Navigator 3.0.0, 3.0.1, 3.0.2, 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.0.7, 3.0.8, 3.0.9, 3.0.10, 3.0.11, and 3.0.12 is vulnerable to missing authorization and could allow an authenticated user to load external plugins and execute code.
network
low complexity
ibm CWE-862
8.8