Show filters
189 Total Results
Displaying 111-120 of 189
Sort by:
Attacker Value
Unknown
CVE-2022-35285
Disclosure Date: July 22, 2022 (last updated February 24, 2025)
IBM Security Verify Information Queue 10.0.2 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 230812.
0
Attacker Value
Unknown
CVE-2022-35288
Disclosure Date: July 22, 2022 (last updated October 07, 2023)
IBM Security Verify Information Queue 10.0.2 could allow a user to obtain sensitive information that could be used in further attacks against the system. IBM X-Force ID: 230818.
0
Attacker Value
Unknown
CVE-2022-35287
Disclosure Date: July 22, 2022 (last updated February 24, 2025)
IBM Security Verify Information Queue 10.0.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 230817.
0
Attacker Value
Unknown
CVE-2022-35284
Disclosure Date: July 22, 2022 (last updated February 24, 2025)
IBM Security Verify Information Queue 10.0.2 could disclose sensitive information due to a missing or insecure SameSite attribute for a sensitive cookie. IBM X-Force ID: 230811.
0
Attacker Value
Unknown
CVE-2022-22452
Disclosure Date: July 13, 2022 (last updated February 24, 2025)
IBM Security Verify Identity Manager 10.0 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 224918.
0
Attacker Value
Unknown
CVE-2022-22460
Disclosure Date: July 13, 2022 (last updated October 07, 2023)
IBM Security Verify Identity Manager 10.0 contains sensitive information in the source code repository that could be used in further attacks against the system. IBM X-Force ID: 225013.
0
Attacker Value
Unknown
CVE-2022-35283
Disclosure Date: July 13, 2022 (last updated October 07, 2023)
IBM Security Verify Information Queue 10.0.2 could allow an authenticated user to cause a denial of service with a specially crafted HTTP request.
0
Attacker Value
Unknown
CVE-2022-22453
Disclosure Date: July 13, 2022 (last updated February 24, 2025)
IBM Security Verify Identity Manager 10.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 224919.
0
Attacker Value
Unknown
CVE-2022-22450
Disclosure Date: July 13, 2022 (last updated February 24, 2025)
IBM Security Verify Identity Manager 10.0 could allow a privileged user to upload a malicious file by bypassing extension security in an HTTP request. IBM X-Force ID: 224916.
0
Attacker Value
Unknown
CVE-2022-22463
Disclosure Date: July 06, 2022 (last updated February 24, 2025)
IBM Security Access Manager Appliance 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 225079.
0