Show filters
8,101 Total Results
Displaying 251-260 of 8,101
Sort by:
Attacker Value
Unknown

CVE-2024-52896

Disclosure Date: December 19, 2024 (last updated February 27, 2025)
IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned.
0
Attacker Value
Unknown

CVE-2024-35141

Disclosure Date: December 19, 2024 (last updated February 27, 2025)
IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate their privileges due to execution of unnecessary privileges.
Attacker Value
Unknown

CVE-2023-30443

Disclosure Date: December 19, 2024 (last updated February 27, 2025)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted query.
Attacker Value
Unknown

CVE-2022-33954

Disclosure Date: December 19, 2024 (last updated February 27, 2025)
IBM Robotic Process Automation 21.0.1, 21.0.2, and 21.0.3 could allow a user with psychical access to the system to obtain sensitive information due to insufficiently protected credentials.
Attacker Value
Unknown

CVE-2021-39081

Disclosure Date: December 19, 2024 (last updated February 27, 2025)
IBM Cognos Analytics Mobile for Android 1.1.14 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Attacker Value
Unknown

CVE-2021-29827

Disclosure Date: December 19, 2024 (last updated February 27, 2025)
IBM InfoSphere Information Server 11.7 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim.
Attacker Value
Unknown

CVE-2021-20553

Disclosure Date: December 19, 2024 (last updated February 27, 2025)
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Attacker Value
Unknown

CVE-2024-51470

Disclosure Date: December 18, 2024 (last updated February 27, 2025)
IBM MQ 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, 9.4 CD, IBM MQ Appliance 9.3 LTS, 9.3 CD, 9.4 LTS, and IBM MQ for HPE NonStop 8.1.0 through 8.1.0.25 could allow an authenticated user to cause a denial-of-service due to messages with improperly set values.
Attacker Value
Unknown

CVE-2024-45082

Disclosure Date: December 18, 2024 (last updated February 27, 2025)
IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted.
Attacker Value
Unknown

CVE-2024-41752

Disclosure Date: December 18, 2024 (last updated February 27, 2025)
IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site.