Vulnerabilities > IBM > Infosphere Information Server > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-30 CVE-2023-50953 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned.
network
low complexity
ibm
4.3
2024-06-30 CVE-2024-28797 Cross-site Scripting vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 is vulnerable stored to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2024-06-30 CVE-2024-31898 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 could allow an authenticated user to read or modify sensitive information by bypassing authentication using insecure direct object references.
network
low complexity
ibm
5.4
2024-06-30 CVE-2023-50954 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 returns sensitive information in URL information that could be used in further attacks against the system.
network
low complexity
ibm
5.3
2024-06-30 CVE-2024-28798 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 is vulnerable to stored cross-site scripting.
network
low complexity
ibm
6.1
2024-06-30 CVE-2024-35119 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in a stack trace.
network
low complexity
ibm
5.3
2024-06-30 CVE-2024-28795 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting.
network
low complexity
ibm
5.4
2024-03-21 CVE-2024-22352 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 stores potentially sensitive information in log files that could be read by a local user.
local
low complexity
ibm
5.5
2024-02-28 CVE-2023-50303 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting.
network
low complexity
ibm
6.1
2024-02-21 CVE-2023-33843 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting.
network
low complexity
ibm
5.4