Show filters
838 Total Results
Displaying 101-110 of 838
Sort by:
Attacker Value
Unknown
CVE-2019-16560
Disclosure Date: December 17, 2019 (last updated October 26, 2023)
A cross-site request forgery vulnerability in Jenkins WebSphere Deployer Plugin 1.6.1 and earlier allows attackers to perform connection tests and determine whether files with an attacker-specified path exist on the Jenkins master file system.
0
Attacker Value
Unknown
CVE-2019-16561
Disclosure Date: December 17, 2019 (last updated October 26, 2023)
Jenkins WebSphere Deployer Plugin 1.6.1 and earlier allows users with Overall/Read access to disable SSL/TLS certificate and hostname validation for the entire Jenkins master JVM.
0
Attacker Value
Unknown
CVE-2019-4663
Disclosure Date: December 10, 2019 (last updated November 27, 2024)
IBM WebSphere Application Server - Liberty is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 171245.
0
Attacker Value
Unknown
CVE-2019-4441
Disclosure Date: October 02, 2019 (last updated November 27, 2024)
IBM WebSphere Application Server 7.0, 8.0, 8.5, 9.0, and Liberty could allow a remote attacker to obtain sensitive information when a stack trace is returned in the browser. IBM X-Force ID: 163177.
0
Attacker Value
Unknown
CVE-2019-4109
Disclosure Date: September 30, 2019 (last updated November 27, 2024)
IBM WebSphere eXtreme Scale 8.6 Admin Console could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 158102.
0
Attacker Value
Unknown
CVE-2019-4305
Disclosure Date: September 30, 2019 (last updated November 27, 2024)
IBM WebSphere Application Server Liberty could allow a remote attacker to obtain sensitive information caused by the improper setting of a cookie. IBM X-Force ID: 160951.
0
Attacker Value
Unknown
CVE-2019-4106
Disclosure Date: September 30, 2019 (last updated November 27, 2024)
IBM WebSphere eXtreme Scale 8.6 Admin Console is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 158099.
0
Attacker Value
Unknown
CVE-2019-4115
Disclosure Date: September 30, 2019 (last updated November 27, 2024)
IBM WebSphere eXtreme Scale 8.6 Admin API is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 158113.
0
Attacker Value
Unknown
CVE-2019-4304
Disclosure Date: September 30, 2019 (last updated November 27, 2024)
IBM WebSphere Application Server - Liberty could allow a remote attacker to bypass security restrictions caused by improper session validation. IBM X-Force ID: 160950.
0
Attacker Value
Unknown
CVE-2019-4112
Disclosure Date: September 30, 2019 (last updated November 27, 2024)
IBM WebSphere eXtreme Scale 8.6 Admin Console allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 158105.
0