Vulnerabilities > IBM > Security Guardium > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-05-24 | CVE-2021-20386 | Cross-site Scripting vulnerability in IBM Security Guardium 11.2 IBM Security Guardium 11.2 is vulnerable to cross-site scripting. | 6.1 |
2021-05-24 | CVE-2021-20428 | Information Exposure Through an Error Message vulnerability in IBM Security Guardium 11.2 IBM Security Guardium 11.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. | 5.3 |
2021-01-27 | CVE-2020-4189 | Cleartext Storage of Sensitive Information vulnerability in IBM Security Guardium 11.2 IBM Security Guardium 11.2 discloses sensitive information in the response headers that could be used in further attacks against the system. | 4.3 |
2020-10-12 | CVE-2020-4689 | Improper Neutralization of Formula Elements in a CSV File vulnerability in IBM Security Guardium 11.2 IBM Security Guardium 11.2 is vulnerable to CVS Injection. | 6.8 |
2020-10-12 | CVE-2020-4681 | Cross-site Scripting vulnerability in IBM Security Guardium 11.2 IBM Security Guardium 11.2 is vulnerable to cross-site scripting. | 5.4 |
2020-10-12 | CVE-2020-4680 | Cross-site Scripting vulnerability in IBM Security Guardium 11.2 IBM Security Guardium 11.2 is vulnerable to cross-site scripting. | 5.4 |
2020-10-12 | CVE-2020-4679 | Cross-site Scripting vulnerability in IBM Security Guardium 11.2 IBM Security Guardium 11.2 is vulnerable to cross-site scripting. | 4.8 |
2020-10-12 | CVE-2020-4678 | Unspecified vulnerability in IBM Security Guardium 11.2 IBM Security Guardium 11.2 could allow an attacker with admin access to obtain and read files that they normally would not have access to. | 4.9 |
2020-07-30 | CVE-2020-4186 | Information Exposure vulnerability in IBM Security Guardium 10.5/10.6/11.1 IBM Security Guardium 10.5, 10.6, and 11.1 could disclose sensitive information on the login page that could aid in further attacks against the system. | 5.3 |
2020-06-23 | CVE-2020-4188 | Use of Insufficiently Random Values vulnerability in IBM Security Guardium 10.6/11.1 IBM Security Guardium 10.6 and 11.1 may use insufficiently random numbers or values in a security context that depends on unpredictable numbers. | 5.3 |