Vulnerabilities > IBM > Content Navigator > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-11-03 CVE-2023-35896 Server-Side Request Forgery (SSRF) vulnerability in IBM Content Navigator 3.0.13
IBM Content Navigator 3.0.13 is vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm CWE-918
5.4
2023-10-04 CVE-2023-40684 Cross-site Scripting vulnerability in IBM Content Navigator 3.0.11/3.0.13/3.0.14
IBM Content Navigator 3.0.11, 3.0.13, and 3.0.14 with IBM Daeja ViewOne Virtual is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-08-09 CVE-2021-29714 Improper Input Validation vulnerability in IBM Content Navigator 3.0.0
IBM Content Navigator 3.0.CD could allow a malicious user to cause a denial of service due to improper input validation.
network
low complexity
ibm CWE-20
6.5
2021-04-27 CVE-2021-20549 Cross-site Scripting vulnerability in IBM Content Navigator 3.0.0
IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-04-27 CVE-2021-20448 Cross-site Scripting vulnerability in IBM Content Navigator 3.0.0
IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-04-27 CVE-2021-20550 Cross-site Scripting vulnerability in IBM Content Navigator 3.0.0
IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-02-02 CVE-2020-4934 Path Traversal vulnerability in IBM Content Navigator 3.0.0
IBM Content Navigator 3.0.CD could allow a remote attacker to traverse directories on the system.
network
low complexity
ibm CWE-22
4.3
2020-12-21 CVE-2020-4757 Cross-site Scripting vulnerability in IBM Content Navigator 3.0.0
IBM FileNet Content Manager and IBM Content Navigator 3.0.CD is vulnerable to stored cross-site scripting.
network
low complexity
ibm CWE-79
6.4
2020-11-10 CVE-2020-4760 Cross-site Scripting vulnerability in IBM Content Navigator 3.0.0
IBM Content Navigator 3.0CD is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2020-11-10 CVE-2020-4704 Cross-site Scripting vulnerability in IBM Content Navigator 3.0.0
IBM Content Navigator 3.0CD is vulnerable to stored cross-site scripting.
network
low complexity
ibm CWE-79
5.4