Vulnerabilities > IBM > Control Center

DATE CVE VULNERABILITY TITLE RISK
2021-05-19 CVE-2021-20528 Cross-site Scripting vulnerability in IBM Control Center 6.2.0.0
IBM Control Center 6.2.0.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-05-19 CVE-2021-20529 Unspecified vulnerability in IBM Control Center 6.2.0.0
IBM Control Center 6.2.0.0 could allow a user to obtain sensitive version information that could be used in further attacks against the system.
network
low complexity
ibm
5.3
2018-02-21 CVE-2017-1758 XXE vulnerability in IBM products
IBM Financial Transaction Manager for ACH Services for Multi-Platform (IBM Control Center 6.0 and 6.1, IBM Financial Transaction Manager 3.0.2, 3.0.3, 3.0.4, and 3.1.0, IBM Transformation Extender Advanced 9.0) is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data.
network
low complexity
ibm CWE-611
7.1
2016-07-08 CVE-2016-0252 Information Exposure vulnerability in IBM Control Center and Sterling Control Center
IBM Control Center 6.x before 6.0.0.1 iFix06 and Sterling Control Center 5.4.x before 5.4.2.1 iFix09 allow local users to decrypt the master key via unspecified vectors.
local
high complexity
ibm CWE-200
5.1