Vulnerabilities > IBM > Low

DATE CVE VULNERABILITY TITLE RISK
2018-10-16 CVE-2018-1777 Cross-site Scripting vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2018-10-12 CVE-2018-1533 Cross-site Scripting vulnerability in IBM Rational Publishing Engine 6.0.5/6.0.6
IBM Rational Publishing Engine 6.0.5 and 6.0.6 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2018-10-12 CVE-2018-1534 Cross-site Scripting vulnerability in IBM Rational Publishing Engine 6.0.5/6.0.6
IBM Rational Publishing Engine 6.0.5 and 6.0.6 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2018-10-12 CVE-2017-1231 Insufficiently Protected Credentials vulnerability in IBM Bigfix Platform
IBM BigFix Platform 9.5 - 9.5.9 stores user credentials in plain in clear text which can be read by a local user.
local
low complexity
ibm CWE-522
2.1
2018-10-11 CVE-2018-1706 Cross-site Scripting vulnerability in IBM Spectrum Symphony 7.2.0.2
IBM Spectrum Symphony 7.2.0.2 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2018-10-05 CVE-2018-1686 Cross-site Scripting vulnerability in IBM Maximo Asset Management
IBM Maximo Asset Management 7.6 through 7.6.3 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2018-10-05 CVE-2018-1723 Information Exposure vulnerability in IBM Spectrum Scale
IBM Spectrum Scale 4.1.1.0, 4.1.1.20, 4.2.0.0, 4.2.3.10, 5.0.0 and 5.0.1.2 could allow an unprivileged, authenticated user with access to a GPFS node to read arbitrary files available on this node.
local
low complexity
ibm CWE-200
2.1
2018-10-05 CVE-2018-1783 Unspecified vulnerability in IBM Spectrum Scale
IBM GPFS (IBM Spectrum Scale 4.1.1.0, 4.1.1.20, 4.2.0.0, 4.2.3.10, 5.0.0 and 5.0.1.2) command line utility allows an unprivileged, authenticated user with access to a GPFS node to forcefully terminate GPFS and deny access to data available through GPFS.
local
low complexity
ibm
2.1
2018-10-05 CVE-2018-1812 Cross-site Scripting vulnerability in IBM Robotic Process Automation With Automation Anywhere 10.0
IBM Robotic Process Automation with Automation Anywhere Enterprise 10 is vulnerable to persistent cross-site scripting, caused by missing escaping of a database field.
network
ibm CWE-79
3.5
2018-10-04 CVE-2018-1602 Cross-site Scripting vulnerability in IBM Rational Quality Manager
IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5