Show filters
266 Total Results
Displaying 131-140 of 266
Sort by:
Attacker Value
Unknown

CVE-2016-2939

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0
Attacker Value
Unknown

CVE-2016-6113

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM Verse is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0
Attacker Value
Unknown

CVE-2016-5880

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0
Attacker Value
Unknown

CVE-2016-2938

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0
Attacker Value
Unknown

CVE-2016-5884

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0
Attacker Value
Unknown

CVE-2016-0282

Disclosure Date: November 24, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in IBM iNotes before 8.5.3 FP6 IF2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, aka SPR KLYHAAHNUS.
0
Attacker Value
Unknown

CVE-2014-8921

Disclosure Date: March 02, 2015 (last updated October 05, 2023)
The IBM Notes Traveler Companion application 1.0 and 1.1 before 201411010515 for Window Phone, as distributed in IBM Notes Traveler 9.0.1, does not properly restrict the number of executions of the automatic configuration option, which makes it easier for remote attackers to capture credentials by conducting a phishing attack involving an encrypted e-mail message.
0
Attacker Value
Unknown

CVE-2014-6130

Disclosure Date: November 04, 2014 (last updated October 05, 2023)
The IBM Notes Traveler application before 9.0.1.3 for Android lacks a warning message during selection of an HTTP session, which makes it easier for remote attackers to obtain sensitive information by sniffing the network during a session in which the user had intended to use HTTPS.
0
Attacker Value
Unknown

CVE-2014-3086

Disclosure Date: August 12, 2014 (last updated October 05, 2023)
Unspecified vulnerability in the IBM Java Virtual Machine, as used in IBM WebSphere Real Time 3 before Service Refresh 7 FP1 and other products, allows remote attackers to gain privileges by leveraging the ability to execute code in the context of a security manager.
0
Attacker Value
Unknown

CVE-2014-0913

Disclosure Date: May 09, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in IBM iNotes and Domino 8.5.3 FP6 before IF2 and 9.0.1 before FP1 allows remote attackers to inject arbitrary web script or HTML via an e-mail message, aka SPR BFEY9GXHZE.
0