Show filters
12 Total Results
Displaying 1-10 of 12
Sort by:
Attacker Value
Unknown

CVE-2021-20422

Disclosure Date: July 12, 2021 (last updated November 28, 2024)
IBM Cloud Pak for Applications 4.3 could disclose sensitive information to a malicious attacker by accessing data stored in memory. IBM X-Force ID: 196304.
Attacker Value
Unknown

CVE-2021-20423

Disclosure Date: July 12, 2021 (last updated February 23, 2025)
IBM Cloud Pak for Applications 4.3 could allow an authenticated user gain escalated privilesges due to improper application permissions. IBM X-Force ID: 196308.
Attacker Value
Unknown

CVE-2021-20365

Disclosure Date: July 12, 2021 (last updated February 23, 2025)
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 195036.
Attacker Value
Unknown

CVE-2021-20360

Disclosure Date: July 12, 2021 (last updated February 23, 2025)
IBM Cloud Pak for Applications 4.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 195031.
Attacker Value
Unknown

CVE-2021-20424

Disclosure Date: July 12, 2021 (last updated February 23, 2025)
IBM Cloud Pak for Applications 4.3 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. X-Force ID: 196309.
Attacker Value
Unknown

CVE-2021-20364

Disclosure Date: July 12, 2021 (last updated February 23, 2025)
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 195035.
Attacker Value
Unknown

CVE-2021-20363

Disclosure Date: July 12, 2021 (last updated February 23, 2025)
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 195034.
Attacker Value
Unknown

CVE-2021-20366

Disclosure Date: July 12, 2021 (last updated February 23, 2025)
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 195037.
Attacker Value
Unknown

CVE-2021-20362

Disclosure Date: July 12, 2021 (last updated February 23, 2025)
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 195033.
Attacker Value
Unknown

CVE-2021-20368

Disclosure Date: July 12, 2021 (last updated February 23, 2025)
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 195357.