Show filters
85 Total Results
Displaying 31-40 of 85
Sort by:
Attacker Value
Unknown
CVE-2021-38983
Disclosure Date: November 12, 2021 (last updated February 23, 2025)
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 212792.
0
Attacker Value
Unknown
CVE-2021-38982
Disclosure Date: November 12, 2021 (last updated February 23, 2025)
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 212791.
0
Attacker Value
Unknown
CVE-2021-38975
Disclosure Date: November 12, 2021 (last updated October 07, 2023)
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 could allow an authenticated user to to obtain sensitive information from a specially crafted HTTP request. IBM X-Force ID: 212780.
0
Attacker Value
Unknown
CVE-2021-38985
Disclosure Date: November 11, 2021 (last updated February 23, 2025)
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
0
Attacker Value
Unknown
CVE-2021-38972
Disclosure Date: November 11, 2021 (last updated February 23, 2025)
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
0
Attacker Value
Unknown
CVE-2021-38973
Disclosure Date: November 11, 2021 (last updated February 23, 2025)
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
0
Attacker Value
Unknown
CVE-2020-4845
Disclosure Date: December 16, 2020 (last updated February 22, 2025)
IBM Security Key Lifecycle Manager 3.0.1 and 4.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190289.
0
Attacker Value
Unknown
CVE-2020-4846
Disclosure Date: December 16, 2020 (last updated February 22, 2025)
IBM Security Key Lifecycle Manager 3.0.1 and 4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190290.
0
Attacker Value
Unknown
CVE-2020-4568
Disclosure Date: November 09, 2020 (last updated February 22, 2025)
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, and 4.0 stores user credentials in plain in clear text which can be read by a local user. IBM X-Force ID: 184157.
0
Attacker Value
Unknown
CVE-2020-4572
Disclosure Date: July 28, 2020 (last updated February 21, 2025)
IBM Tivoli Key Lifecycle Manager 3.0.1 and 4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 184179.
0