Show filters
8,081 Total Results
Displaying 101-110 of 8,081
Sort by:
Attacker Value
Unknown

CVE-2024-45650

Disclosure Date: January 31, 2025 (last updated February 01, 2025)
IBM Security Verify Directory 10.0 through 10.0.3 is vulnerable to a denial of service when sending an LDAP extended operation.
Attacker Value
Unknown

CVE-2022-43916

Disclosure Date: January 30, 2025 (last updated January 31, 2025)
IBM App Connect Enterprise Certified Container 7.1, 7.2, 8.0, 8.1, 8.2, 9.0, 9.1, 9.2, 10.0, 10.1, 11.0, 11.1, 11.2, 11.3, 11.4, 11.5, 11.6, 12.0, 12.1, 12.2, 12.3, 12.4, 12.5, 12.6, and 12.7 Pods do not restrict network egress for Pods that are used for internal infrastructure.
0
Attacker Value
Unknown

CVE-2023-37413

Disclosure Date: January 29, 2025 (last updated January 30, 2025)
IBM Aspera Faspex 5.0.0 through 5.0.10 could disclose sensitive username information due to an observable response discrepancy.
Attacker Value
Unknown

CVE-2023-37412

Disclosure Date: January 29, 2025 (last updated January 30, 2025)
IBM Aspera Faspex 5.0.0 through 5.0.10 could allow a privileged user to make system changes without proper access controls.
Attacker Value
Unknown

CVE-2023-37398

Disclosure Date: January 29, 2025 (last updated January 30, 2025)
IBM Aspera Faspex 5.0.0 through 5.0.10 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
Attacker Value
Unknown

CVE-2023-35907

Disclosure Date: January 29, 2025 (last updated January 30, 2025)
IBM Aspera Faspex 5.0.0 through 5.0.10 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
Attacker Value
Unknown

CVE-2023-33838

Disclosure Date: January 29, 2025 (last updated January 29, 2025)
IBM Security Verify Governance 10.0.2 Identity Manager uses a one-way cryptographic hash against an input that should not be reversible, such as a password, but the product does not also use a salt as part of the input.
Attacker Value
Unknown

CVE-2023-35017

Disclosure Date: January 29, 2025 (last updated January 29, 2025)
IBM Security Verify Governance 10.0.2 Identity Manager can transmit user credentials in clear text that could be obtained by an attacker using man in the middle techniques.
0
Attacker Value
Unknown

CVE-2024-22315

Disclosure Date: January 28, 2025 (last updated January 28, 2025)
IBM Fusion and IBM Fusion HCI 2.3.0 through 2.8.2 is vulnerable to insecure network connection by allowing an attacker who gains access to a Fusion container to establish an external network connection.
Attacker Value
Unknown

CVE-2024-27263

Disclosure Date: January 28, 2025 (last updated January 28, 2025)
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to obtain sensitive information from the dashboard UI using man in the middle techniques.