Vulnerabilities > IBM > Engineering Workflow Management > High

DATE CVE VULNERABILITY TITLE RISK
2021-10-27 CVE-2021-29774 Unspecified vulnerability in IBM products
IBM Jazz Team Server products could allow an authenticated user to obtain elevated privileges under certain configurations.
network
high complexity
ibm
7.5
2021-10-27 CVE-2021-29844 Server-Side Request Forgery (SSRF) vulnerability in IBM products
IBM Jazz Team Server products is vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm CWE-918
8.8
2021-04-12 CVE-2020-4965 Use of a Broken or Risky Cryptographic Algorithm vulnerability in IBM products
IBM Jazz Team Server products use weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
low complexity
ibm CWE-327
7.5
2021-03-30 CVE-2021-20502 XXE vulnerability in IBM products
IBM Jazz Foundation Products are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data.
network
low complexity
ibm CWE-611
7.1