Vulnerabilities > IBM > Rational Appscan

DATE CVE VULNERABILITY TITLE RISK
2011-10-30 CVE-2011-1366 Remote Security vulnerability in Rational Appscan
Unspecified vulnerability in the Import feature in IBM Rational AppScan Enterprise and AppScan Reporting Console 5.2 through 7.9.x and 8.x before 8.0.1.1 allows remote attackers to execute arbitrary commands on an agent server via a crafted ZIP archive.
network
ibm
8.8
2009-10-22 CVE-2009-3745 Cross-Site Scripting vulnerability in IBM Rational Appscan 5.5.0.2
Cross-site scripting (XSS) vulnerability in the help pages in IBM Rational AppScan Enterprise Edition 5.5.0.2 allows remote attackers to inject arbitrary web script or HTML via the query string.
network
ibm CWE-79
4.3
2009-03-24 CVE-2009-1056 Information Disclosure vulnerability in IBM Rational AppScan Enterprise Exported Report
IBM Rational AppScan Enterprise before 5.5 FP1 allows remote attackers to read arbitrary exported reports by "forcefully browsing."
network
low complexity
ibm
5.0