Vulnerabilities > IBM > Low

DATE CVE VULNERABILITY TITLE RISK
2021-07-27 CVE-2021-20562 Cross-site Scripting vulnerability in IBM Sterling B2B Integrator
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5_3 and 6.1.0.0 through 6.1.0.2 vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-07-20 CVE-2021-20478 Information Exposure vulnerability in IBM Cloud PAK System 2.3
IBM Cloud Pak System 2.3 could allow a local user in some situations to view the artifacts of another user in self service console.
local
low complexity
ibm CWE-200
2.1
2021-07-19 CVE-2021-20507 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-07-19 CVE-2020-5031 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-07-16 CVE-2020-4980 Cleartext Transmission of Sensitive Information vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.3 and 7.4 uses less secure methods for protecting data in transit between hosts when encrypt host connections is not enabled as well as data at rest.
low complexity
ibm CWE-319
3.3
2021-07-15 CVE-2021-20524 Cross-site Scripting vulnerability in IBM Security Verify Access 10.0.0
IBM Security Verify Access Docker 10.0.0 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-07-15 CVE-2021-20510 Cleartext Storage of Sensitive Information vulnerability in IBM Security Verify Access 10.0.0
IBM Security Verify Access Docker 10.0.0 stores user credentials in plain clear text which can be read by a local user.
local
low complexity
ibm CWE-312
2.1
2021-07-15 CVE-2021-20500 Unspecified vulnerability in IBM Security Verify Access 10.0.0
IBM Security Verify Access Docker 10.0.0 could reveal highly sensitive information to a local privileged user.
local
low complexity
ibm
2.1
2021-07-13 CVE-2021-20368 Cross-site Scripting vulnerability in IBM Cloud PAK for Applications
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-07-13 CVE-2021-20366 Cross-site Scripting vulnerability in IBM Cloud PAK for Applications
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5