Show filters
354 Total Results
Displaying 31-40 of 354
Sort by:
Attacker Value
Unknown

CVE-2024-22352

Disclosure Date: March 21, 2024 (last updated April 02, 2024)
IBM InfoSphere Information Server 11.7 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 280361.
Attacker Value
Unknown

CVE-2023-50303

Disclosure Date: February 28, 2024 (last updated December 21, 2024)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 273333.
Attacker Value
Unknown

CVE-2023-50955

Disclosure Date: February 21, 2024 (last updated December 21, 2024)
IBM InfoSphere Information Server 11.7 could allow an authenticated privileged user to obtain the absolute path of the web server installation which could aid in further attacks against the system. IBM X-Force ID: 275777.
Attacker Value
Unknown

CVE-2023-33843

Disclosure Date: February 21, 2024 (last updated December 21, 2024)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 256544.
Attacker Value
Unknown

CVE-2023-46174

Disclosure Date: December 01, 2023 (last updated December 05, 2023)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 269506.
Attacker Value
Unknown

CVE-2023-43021

Disclosure Date: December 01, 2023 (last updated December 05, 2023)
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 266167.
Attacker Value
Unknown

CVE-2023-42022

Disclosure Date: December 01, 2023 (last updated December 05, 2023)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 265938.
Attacker Value
Unknown

CVE-2023-42019

Disclosure Date: December 01, 2023 (last updated December 05, 2023)
IBM InfoSphere Information Server 11.7 could allow a remote attacker to cause a denial of service due to improper input validation. IBM X-Force ID: 265161.
Attacker Value
Unknown

CVE-2023-42009

Disclosure Date: December 01, 2023 (last updated December 05, 2023)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 265504.
Attacker Value
Unknown

CVE-2023-40699

Disclosure Date: December 01, 2023 (last updated December 05, 2023)
IBM InfoSphere Information Server 11.7 could allow a remote attacker to cause a denial of service due to improper input validation. IBM X-Force ID: 265161.