Vulnerabilities > IBM > Filenet Workplace XT

DATE CVE VULNERABILITY TITLE RISK
2017-02-01 CVE-2016-8921 Unrestricted Upload of File with Dangerous Type vulnerability in IBM Filenet Workplace XT 1.1.5
IBM FileNet WorkPlace XT could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server.
network
low complexity
ibm CWE-434
8.8
2016-11-25 CVE-2016-5981 Cross-site Scripting vulnerability in IBM Filenet Workplace and Filenet Workplace XT
Cross-site scripting (XSS) vulnerability in IBM FileNet Workplace XT through 1.1.5.2-WPXT-LA011 and FileNet Workplace (Application Engine) through 4.0.2.14-P8AE-IF001, when RegExpSecurityFilter and ScriptSecurityFilter are misconfigured, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
low complexity
ibm CWE-79
5.4