Vulnerabilities > IBM > Daeja Viewone > 5.0

DATE CVE VULNERABILITY TITLE RISK
2019-10-01 CVE-2019-4246 Unspecified vulnerability in IBM Daeja Viewone
IBM Daeja ViewONE Virtual 5.0 through 5.0.6 could expose internal parameters to ViewONE clients that could be used in further attacks against the system.
network
low complexity
ibm
5.3
2019-07-30 CVE-2019-4456 XXE vulnerability in IBM Daeja Viewone
IBM Daeja ViewONE Professional, Standard & Virtual 5.0.5 and 5.0.6 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data.
network
low complexity
ibm CWE-611
7.1
2019-07-02 CVE-2019-4260 Unspecified vulnerability in IBM Daeja Viewone
IBM Daeja ViewONE Professional, Standard & Virtual 5.0 through 5.0.5 could allow an unauthorized user to download server files resulting in sensitive information disclosure.
network
low complexity
ibm
5.3
2018-11-02 CVE-2018-1835 XXE vulnerability in IBM Daeja Viewone 5.0
IBM Daeja ViewONE Professional, Standard & Virtual 5 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data.
network
low complexity
ibm CWE-611
7.1
2017-07-13 CVE-2017-1308 Files or Directories Accessible to External Parties vulnerability in IBM Daeja Viewone 4.1.5/4.1.5.1/5.0
IBM Daeja ViewONE Professional, Standard & Virtual 4.1.5.1 and 5.0 could allow an authenticated attacker to download files they should not have access to due to improper access controls.
network
low complexity
ibm CWE-552
6.5