Vulnerabilities > IBM > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-07-05 CVE-2016-9700 Information Exposure vulnerability in IBM products
IBM Jazz Foundation could allow an authenticated attacker to obtain sensitive information from error message stack traces.
network
low complexity
ibm CWE-200
4.3
2017-07-05 CVE-2017-1208 Cross-site Scripting vulnerability in IBM Maximo Asset Management
IBM Maximo Asset Management 7.1, 7.5, and 7.6 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-07-05 CVE-2017-1207 Insufficiently Protected Credentials vulnerability in IBM Integration BUS and Websphere Message Broker
IBM WebSphere Message Broker stores user credentials in plain in clear text which can be read by a local user.
local
low complexity
ibm CWE-522
5.5
2017-07-05 CVE-2017-1113 Cross-site Scripting vulnerability in IBM Rational Team Concert
IBM Rational Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-07-05 CVE-2016-9746 Cross-site Scripting vulnerability in IBM products
IBM Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-07-05 CVE-2016-9733 Cross-site Scripting vulnerability in IBM products
IBM Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-07-05 CVE-2016-9701 Cross-site Scripting vulnerability in IBM products
IBM Team Concert 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-07-05 CVE-2017-1258 Improper Authentication vulnerability in IBM Security Guardium
IBM Security Guardium 10.0 and 10.1 does not perform an authentication check for a critical resource or functionality allowing anonymous users access to protected areas.
network
low complexity
ibm CWE-287
6.5
2017-07-05 CVE-2017-1256 Cross-site Scripting vulnerability in IBM Security Guardium 10.0/10.1
IBM Security Guardium 10.0, 10.1 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1
2017-07-05 CVE-2017-1217 Cross-site Scripting vulnerability in IBM Websphere Portal 8.5/9.0
IBM WebSphere Portal 8.5 and 9.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1