Show filters
196 Total Results
Displaying 31-40 of 196
Sort by:
Attacker Value
Unknown

CVE-2022-43909

Disclosure Date: August 27, 2023 (last updated October 08, 2023)
IBM Security Guardium 11.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 240905.
Attacker Value
Unknown

CVE-2022-43907

Disclosure Date: August 27, 2023 (last updated October 08, 2023)
IBM Security Guardium 11.4 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 240901.
Attacker Value
Unknown

CVE-2023-35893

Disclosure Date: August 16, 2023 (last updated October 08, 2023)
IBM Security Guardium 10.6, 11.3, 11.4, and 11.5 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 258824.
Attacker Value
Unknown

CVE-2022-43910

Disclosure Date: July 19, 2023 (last updated October 08, 2023)
IBM Security Guardium 11.3 could allow a local user to escalate their privileges due to improper permission controls. IBM X-Force ID: 240908.
Attacker Value
Unknown

CVE-2022-43908

Disclosure Date: July 19, 2023 (last updated October 08, 2023)
IBM Security Guardium 11.3 could allow an authenticated user to cause a denial of service due to improper input validation. IBM X-Force ID: 240903.
Attacker Value
Unknown

CVE-2022-22307

Disclosure Date: June 15, 2023 (last updated October 08, 2023)
IBM Security Guardium 11.3, 11.4, and 11.5 could allow a local user to obtain elevated privileges due to incorrect authorization checks. IBM X-Force ID: 216753.
Attacker Value
Unknown

CVE-2023-0041

Disclosure Date: June 05, 2023 (last updated October 08, 2023)
IBM Security Guardium 11.5 could allow a user to take over another user's session due to insufficient session expiration. IBM X-Force ID: 243657.
Attacker Value
Unknown

CVE-2022-39166

Disclosure Date: December 20, 2022 (last updated November 08, 2023)
IBM Security Guardium 11.4 could allow a privileged user to obtain sensitive information inside of an HTTP response. IBM X-Force ID: 235405.
Attacker Value
Unknown

CVE-2021-39077

Disclosure Date: November 03, 2022 (last updated February 24, 2025)
IBM Security Guardium 10.5, 10.6, 11.0, 11.1, 11.2, 11.3, and 11.4 stores user credentials in plain clear text which can be read by a local privileged user. IBM X-Force ID: 215587.  
Attacker Value
Unknown

CVE-2021-39074

Disclosure Date: June 27, 2022 (last updated February 24, 2025)
IBM Security Guardium 11.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.