Show filters
7,651 Total Results
Displaying 101-110 of 7,651
Sort by:
Attacker Value
Unknown
CVE-2023-35017
Disclosure Date: January 29, 2025 (last updated January 29, 2025)
IBM Security Verify Governance 10.0.2 Identity Manager can transmit user credentials in clear text that could be obtained by an attacker using man in the middle techniques.
0
Attacker Value
Unknown
CVE-2024-22315
Disclosure Date: January 28, 2025 (last updated January 28, 2025)
IBM Fusion and IBM Fusion HCI 2.3.0 through 2.8.2 is vulnerable to insecure network connection by allowing an attacker who gains access to a Fusion container to establish an external network connection.
0
Attacker Value
Unknown
CVE-2024-27263
Disclosure Date: January 28, 2025 (last updated January 28, 2025)
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to obtain sensitive information from the dashboard UI using man in the middle techniques.
0
Attacker Value
Unknown
CVE-2023-50316
Disclosure Date: January 28, 2025 (last updated January 28, 2025)
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1
is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
0
Attacker Value
Unknown
CVE-2024-28786
Disclosure Date: January 28, 2025 (last updated January 28, 2025)
IBM QRadar SIEM 7.5 transmits sensitive or security-critical data in cleartext in a communication channel that could be obtained by an unauthorized actor using man in the middle techniques.
0
Attacker Value
Unknown
CVE-2024-37526
Disclosure Date: January 27, 2025 (last updated January 28, 2025)
IBM Watson Query on Cloud Pak for Data (IBM Data Virtualization 1.8, 2.0, 2.1, 2.2, and 3.0.0) could allow an authenticated user to obtain sensitive information from objects published using Watson Query due to an improper data protection mechanism.
0
Attacker Value
Unknown
CVE-2024-27256
Disclosure Date: January 27, 2025 (last updated February 19, 2025)
IBM MQ Container 3.0.0, 3.0.1, 3.1.0 through 3.1.3 CD, 2.0.0 LTS through 2.0.22 LTS and 2.4.0 through 2.4.8, 2.3.0 through 2.3.3, 2.2.0 through 2.2.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
0
Attacker Value
Unknown
CVE-2024-38325
Disclosure Date: January 27, 2025 (last updated January 28, 2025)
IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI
could allow a remote attacker to obtain sensitive information, caused by sending network requests over an insecure channel. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.
0
Attacker Value
Unknown
CVE-2024-38320
Disclosure Date: January 27, 2025 (last updated January 28, 2025)
IBM Storage Protect for Virtual Environments: Data Protection for VMware and Storage Protect Backup-Archive Client 8.1.0.0 through 8.1.23.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
0
Attacker Value
Unknown
CVE-2024-37527
Disclosure Date: January 27, 2025 (last updated January 28, 2025)
IBM OpenPages with Watson 8.3 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0