Vulnerabilities > IBM > Security Verify Access > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-07-08 | CVE-2022-22370 | Cross-site Scripting vulnerability in IBM Security Verify Access IBM Security Verify Access 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 is vulnerable to cross-site scripting. | 3.5 |
2022-01-10 | CVE-2021-38895 | Cross-site Scripting vulnerability in IBM Security Verify Access 10.0.0/10.0.1.0/10.0.2.0 IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 is vulnerable to cross-site scripting. | 3.5 |
2021-07-15 | CVE-2021-20524 | Cross-site Scripting vulnerability in IBM Security Verify Access 10.0.0 IBM Security Verify Access Docker 10.0.0 is vulnerable to cross-site scripting. | 3.5 |
2021-07-15 | CVE-2021-20510 | Cleartext Storage of Sensitive Information vulnerability in IBM Security Verify Access 10.0.0 IBM Security Verify Access Docker 10.0.0 stores user credentials in plain clear text which can be read by a local user. | 2.1 |
2021-07-15 | CVE-2021-20500 | Unspecified vulnerability in IBM Security Verify Access 10.0.0 IBM Security Verify Access Docker 10.0.0 could reveal highly sensitive information to a local privileged user. | 2.1 |
2021-06-01 | CVE-2021-20575 | Insecure Storage of Sensitive Information vulnerability in IBM Application Gateway and Security Verify Access IBM Security Verify Access 20.07 allows web pages to be stored locally which can be read by another user on the system. | 2.1 |
2020-10-12 | CVE-2020-4660 | Information Exposure Through Discrepancy vulnerability in IBM Security Access Manager and Security Verify Access IBM Security Access Manager 9.0.7 and IBM Security Verify Access 10.0.0 could allow an attacker to obtain sensitive using timing side channel attacks which could aid in further attacks against the system. | 2.9 |
2020-10-12 | CVE-2020-4661 | Information Exposure Through Discrepancy vulnerability in IBM Security Access Manager and Security Verify Access IBM Security Access Manager 9.0.7 and IBM Security Verify Access 10.0.0 could allow an attacker to obtain sensitive using timing side channel attacks which could aid in further attacks against the system. | 2.9 |
2020-10-12 | CVE-2020-4699 | Information Exposure Through Discrepancy vulnerability in IBM Security Access Manager and Security Verify Access IBM Security Access Manager 9.0.7 and IBM Security Verify Access 10.0.0 could allow an attacker to obtain sensitive using timing side channel attacks which could aid in further attacks against the system. | 2.9 |