Vulnerabilities > IBM > Security Guardium KEY Lifecycle Manager > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-11-15 CVE-2021-38982 Cross-site Scripting vulnerability in IBM products
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-11-12 CVE-2021-38972 Improper Input Validation vulnerability in IBM products
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
network
low complexity
ibm CWE-20
4.3
2021-11-12 CVE-2021-38985 Improper Input Validation vulnerability in IBM products
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
network
low complexity
ibm CWE-20
4.3