Vulnerabilities > IBM > Filenet Workplace > 4.0.2.3

DATE CVE VULNERABILITY TITLE RISK
2016-11-25 CVE-2016-5981 Cross-site Scripting vulnerability in IBM Filenet Workplace and Filenet Workplace XT
Cross-site scripting (XSS) vulnerability in IBM FileNet Workplace XT through 1.1.5.2-WPXT-LA011 and FileNet Workplace (Application Engine) through 4.0.2.14-P8AE-IF001, when RegExpSecurityFilter and ScriptSecurityFilter are misconfigured, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
ibm CWE-79
3.5
2016-08-08 CVE-2016-5878 Open Redirect vulnerability in IBM Filenet Workplace
Open redirect vulnerability in IBM FileNet Workplace 4.0.2 before 4.0.2.14 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
network
ibm CWE-601
4.9