Vulnerabilities > IBM > Tivoli Storage Productivity Center > 5.2.2.0

DATE CVE VULNERABILITY TITLE RISK
2017-02-01 CVE-2016-8943 Cross-site Scripting vulnerability in IBM products
IBM Tivoli Storage Productivity Center is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2017-02-01 CVE-2016-8942 Improper Access Control vulnerability in IBM products
IBM Tivoli Storage Productivity Center could allow an authenticated user with intimate knowledge of the system to edit a limited set of properties on the server.
network
ibm CWE-284
3.5
2017-02-01 CVE-2016-8941 Cross-Site Request Forgery (CSRF) vulnerability in IBM products
IBM Tivoli Storage Productivity Center is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
network
ibm CWE-352
6.8