Vulnerabilities > IBM > Websphere > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-12-14 CVE-2018-1848 Cross-site Scripting vulnerability in IBM products
IBM Business Automation Workflow 18.0.0.0 and 18.0.0.1 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1
2017-03-07 CVE-2016-9693 Improper Input Validation vulnerability in IBM Business Process Manager
IBM Business Process Manager 7.5, 8.0, and 8.5 has a file download capability that is vulnerable to a set of attacks.
local
low complexity
ibm CWE-20
6.1