Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-03-08 CVE-2017-6544 Cross-site Scripting vulnerability in Wuhu Project Wuhu 20170308
Gargaj/wuhu through 2017-03-08 is vulnerable to a reflected XSS in wuhu-master/www_admin/users.php (id parameter).
network
low complexity
wuhu-project CWE-79
6.1
2017-03-08 CVE-2016-9985 Information Exposure Through Log Files vulnerability in IBM Cognos Business Intelligence 10.1.1/10.2
IBM Cognos Server 10.1.1 and 10.2 stores highly sensitive information in log files that could be read by a local user.
local
low complexity
ibm CWE-532
5.5
2017-03-08 CVE-2016-9006 Cross-site Scripting vulnerability in IBM Urbancode Deploy
IBM UrbanCode Deploy 6.1 and 6.2 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-03-08 CVE-2016-5933 7PK - Security Features vulnerability in IBM Tivoli Monitoring
IBM Tivoli Monitoring 6.2 and 6.3 is vulnerable to possible host header injection attack that could lead to HTTP cache poisoning or firewall bypass.
network
low complexity
ibm CWE-254
4.6
2017-03-08 CVE-2016-5894 Information Exposure vulnerability in IBM Websphere Commerce
IBM WebSphere Commerce Enterprise, Professional, Express, and Developer 7.0 and 8.0 is vulnerable to information disclosure vulnerability.
local
high complexity
ibm CWE-200
5.1
2017-03-08 CVE-2017-6541 Cross-site Scripting vulnerability in Webpagetest Project Webpagetest 3.0
Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0.
network
low complexity
webpagetest-project CWE-79
6.1
2017-03-08 CVE-2017-6540 Cross-site Scripting vulnerability in Webpagetest Project Webpagetest 3.0
Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0.
network
low complexity
webpagetest-project CWE-79
6.1
2017-03-08 CVE-2017-6539 Cross-site Scripting vulnerability in Webpagetest Project Webpagetest 3.0
Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0.
network
low complexity
webpagetest-project CWE-79
6.1
2017-03-08 CVE-2017-6538 Cross-site Scripting vulnerability in Webpagetest Project Webpagetest 3.0
A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0.
network
low complexity
webpagetest-project CWE-79
6.1
2017-03-08 CVE-2017-6537 Cross-site Scripting vulnerability in Webpagetest Project Webpagetest 3.0
A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0.
network
low complexity
webpagetest-project CWE-79
6.1