Vulnerabilities > IBM

DATE CVE VULNERABILITY TITLE RISK
2018-01-29 CVE-2017-1779 Insufficiently Protected Credentials vulnerability in multiple products
IBM Cognos Analytics 11.0 could store cached credentials locally that could be obtained by a local user.
local
low complexity
ibm netapp CWE-522
7.8
2018-01-26 CVE-2017-1653 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 6.0.x) is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2018-01-26 CVE-2017-1567 Cross-site Scripting vulnerability in IBM Rational Doors
IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2018-01-26 CVE-2017-1563 Cross-site Scripting vulnerability in IBM Rational Doors
IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2018-01-26 CVE-2017-1545 Unspecified vulnerability in IBM Rational Doors
IBM Doors Web Access 9.5 and 9.6 could allow an attacker with physical access to the system to log into the application using previously stored credentials.
low complexity
ibm
6.8
2018-01-26 CVE-2017-1540 Cross-site Scripting vulnerability in IBM Rational Doors
IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2018-01-26 CVE-2017-1532 Cross-site Scripting vulnerability in IBM Rational Doors
IBM DOORS 9.5 and 9.6 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2018-01-26 CVE-2017-1516 Improper Input Validation vulnerability in IBM Rational Doors
IBM Doors Web Access 9.5 and 9.6 could allow a remote attacker to hijack the clicking action of the victim.
network
low complexity
ibm CWE-20
5.4
2018-01-26 CVE-2017-1515 Information Exposure vulnerability in IBM Rational Doors
IBM Doors Web Access 9.5 and 9.6 could allow an authenticated user to obtain sensitive information from HTTP internal server error responses.
network
low complexity
ibm CWE-200
4.3
2018-01-26 CVE-2017-1506 Cross-site Scripting vulnerability in IBM Cognos TM1 10.2/10.2.2
IBM Cognos TM1 10.2 and 10.2.2 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1