Show filters
185 Total Results
Displaying 21-30 of 185
Sort by:
Attacker Value
Unknown

CVE-2024-31902

Disclosure Date: June 30, 2024 (last updated August 01, 2024)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 289234.
Attacker Value
Unknown

CVE-2024-28798

Disclosure Date: June 30, 2024 (last updated August 01, 2024)
IBM InfoSphere Information Server 11.7 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 287172.
Attacker Value
Unknown

CVE-2023-50954

Disclosure Date: June 30, 2024 (last updated August 22, 2024)
IBM InfoSphere Information Server 11.7 returns sensitive information in URL information that could be used in further attacks against the system. IBM X-Force ID: 275776.
Attacker Value
Unknown

CVE-2024-28795

Disclosure Date: June 30, 2024 (last updated August 21, 2024)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 286832.
Attacker Value
Unknown

CVE-2023-35022

Disclosure Date: June 30, 2024 (last updated August 21, 2024)
IBM InfoSphere Information Server 11.7 could allow a local user to update projects that they do not have the authorization to access. IBM X-Force ID: 258254.
Attacker Value
Unknown

CVE-2024-22352

Disclosure Date: March 21, 2024 (last updated April 02, 2024)
IBM InfoSphere Information Server 11.7 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 280361.
Attacker Value
Unknown

CVE-2023-50303

Disclosure Date: February 28, 2024 (last updated December 21, 2024)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 273333.
Attacker Value
Unknown

CVE-2023-50955

Disclosure Date: February 21, 2024 (last updated December 21, 2024)
IBM InfoSphere Information Server 11.7 could allow an authenticated privileged user to obtain the absolute path of the web server installation which could aid in further attacks against the system. IBM X-Force ID: 275777.
Attacker Value
Unknown

CVE-2023-33843

Disclosure Date: February 21, 2024 (last updated December 21, 2024)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 256544.
Attacker Value
Unknown

CVE-2023-46174

Disclosure Date: December 01, 2023 (last updated December 05, 2023)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 269506.