Vulnerabilities > IBM > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-05-07 CVE-2020-4901 Unspecified vulnerability in IBM Robotic Process Automation With Automation Anywhere
IBM Robotic Process Automation with Automation Anywhere 11.0 could allow an attacker on the network to obtain sensitive information or cause a denial of service through username enumeration.
network
low complexity
ibm
6.5
2021-05-05 CVE-2021-20397 Cross-site Scripting vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.3 and 7.4 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1
2021-05-05 CVE-2020-4993 Path Traversal vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.3 and 7.4 when decompressing or verifying signature of zip files processes data in a way that may be vulnerable to path traversal attacks.
network
low complexity
ibm CWE-22
4.9
2021-05-05 CVE-2020-4929 Cross-site Scripting vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.3 and 7.4 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-05-05 CVE-2020-4883 Unspecified vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.3 and 7.4 could disclose sensitive information about other domains which could be used in further attacks against the system.
network
low complexity
ibm
6.5
2021-05-04 CVE-2020-4987 Cross-site Scripting vulnerability in IBM Flashsystem 900 Firmware 1.4
The IBM FlashSystem 900 user management GUI is vulnerable to stored cross-site scripting in code versions 1.5.2.8 and prior and 1.6.1.2 and prior.
network
low complexity
ibm CWE-79
5.4
2021-04-30 CVE-2021-20515 Out-of-bounds Write vulnerability in IBM Informix Dynamic Server 14.10
IBM Informix Dynamic Server 14.10 is vulnerable to a stack based buffer overflow, caused by improper bounds checking.
local
low complexity
ibm CWE-787
6.7
2021-04-27 CVE-2021-29666 Cross-site Scripting vulnerability in IBM Spectrum Scale
IBM Spectrum Scale 5.0.0 through 5.0.5.6 and 5.1.0 through 5.1.0.2 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-04-27 CVE-2021-20549 Cross-site Scripting vulnerability in IBM Content Navigator 3.0.0
IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-04-27 CVE-2020-4981 Improper Input Validation vulnerability in IBM Spectrum Scale
IBM Spectrum Scale 5.0.4.1 through 5.1.0.3 could allow a local privileged user to overwrite files due to improper input validation.
local
low complexity
ibm CWE-20
6.0