Vulnerabilities > IBM > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-07-14 CVE-2022-22477 Cross-site Scripting vulnerability in IBM Websphere Application Server 8.5/9.0
IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1
2022-07-14 CVE-2022-35283 Unspecified vulnerability in IBM Security Verify Information Queue 10.0.2
IBM Security Verify Information Queue 10.0.2 could allow an authenticated user to cause a denial of service with a specially crafted HTTP request.
network
low complexity
ibm
6.5
2022-07-13 CVE-2022-34358 Cross-site Scripting vulnerability in IBM I
IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2022-07-12 CVE-2021-39041 Unspecified vulnerability in IBM Qradar Security Information and Event Manager 7.3.0/7.4.0/7.5.0
IBM QRadar SIEM 7.3, 7.4, and 7.5 may be vulnerable to partial denial of service attack, resulting in some protocols not listening to specified ports.
network
low complexity
ibm
5.3
2022-07-11 CVE-2020-4138 Unspecified vulnerability in IBM Security Siteprotector System 3.1.1
IBM SiteProtector Appliance 3.1.1 allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm
5.5
2022-07-08 CVE-2022-22370 Cross-site Scripting vulnerability in IBM Security Verify Access
IBM Security Verify Access 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2022-07-08 CVE-2022-22463 SQL Injection vulnerability in IBM Security Verify Access
IBM Security Access Manager Appliance 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 is vulnerable to SQL injection.
network
low complexity
ibm CWE-89
6.5
2022-07-08 CVE-2022-34160 Cross-site Scripting vulnerability in IBM Cics TX 11.1
IBM CICS TX Standard and Advanced 11.1 is vulnerable to HTML injection.
network
low complexity
ibm CWE-79
5.4
2022-07-08 CVE-2022-34166 Cross-site Scripting vulnerability in IBM Cics TX 11.1
IBM CICS TX Standard and Advanced 11.1 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2022-07-08 CVE-2022-34167 Cross-site Scripting vulnerability in IBM Cics TX 11.1
IBM CICS TX Standard and Advanced 11.1 is vulnerable to stored cross-site scripting.
network
low complexity
ibm CWE-79
5.4