Show filters
441 Total Results
Displaying 381-390 of 441
Sort by:
Attacker Value
Unknown

CVE-2013-4025

Disclosure Date: September 25, 2013 (last updated October 05, 2023)
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x do not have an off autocomplete attribute for the login-password field, which makes it easier for remote attackers to obtain access by leveraging an unattended workstation.
0
Attacker Value
Unknown

CVE-2013-4022

Disclosure Date: September 25, 2013 (last updated October 05, 2023)
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x store unspecified authentication information in a cookie, which allows remote authenticated users to bypass intended access restrictions via unknown vectors.
0
Attacker Value
Unknown

CVE-2013-4024

Disclosure Date: September 25, 2013 (last updated October 05, 2023)
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x support HTTP access to the Web Console, which allows remote attackers to read session cookies by sniffing the network.
0
Attacker Value
Unknown

CVE-2013-5216

Disclosure Date: September 12, 2013 (last updated October 05, 2023)
Directory traversal vulnerability in logreader/uploadreader.jsp in CapaSystems Performance Guard before 6.2.102 allows remote attackers to read arbitrary files via unspecified vectors.
0
Attacker Value
Unknown

CVE-2013-2979

Disclosure Date: August 22, 2013 (last updated October 05, 2023)
Directory traversal vulnerability in IBM Optim Performance Manager 4.1.1 and IBM InfoSphere Optim Performance Manager 5.x before 5.2 allows remote authenticated users to read arbitrary files via a crafted URL.
0
Attacker Value
Unknown

CVE-2013-2341

Disclosure Date: July 06, 2013 (last updated October 05, 2023)
Unspecified vulnerability on the HP ProCurve JC###A, JC###B, JD###A, JD###B, JE###A, JF###A, JF###B, JF###C, JG###A, 658250-B21, and 658247-B21; HP 3COM routers and switches; and HP H3C routers and switches allows remote authenticated users to execute arbitrary code or obtain sensitive information via unknown vectors.
0
Attacker Value
Unknown

CVE-2013-2340

Disclosure Date: July 06, 2013 (last updated October 05, 2023)
Unspecified vulnerability on the HP ProCurve JC###A, JC###B, JD###A, JD###B, JE###A, JF###A, JF###B, JF###C, JG###A, 658250-B21, and 658247-B21; HP 3COM routers and switches; and HP H3C routers and switches allows remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors.
0
Attacker Value
Unknown

CVE-2013-0470

Disclosure Date: April 05, 2013 (last updated October 05, 2023)
HTTPD in IBM Netezza Performance Portal 1.0.2 allows remote authenticated users to list application directories containing asset files via a direct request to a directory URI, as demonstrated by listing image files.
0
Attacker Value
Unknown

CVE-2012-5530

Disclosure Date: November 29, 2012 (last updated October 05, 2023)
The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3.6.10 allow local users to overwrite arbitrary files via a symlink attack on a /var/tmp/##### temporary file.
0
Attacker Value
Unknown

CVE-2012-3270

Disclosure Date: November 07, 2012 (last updated October 05, 2023)
Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, a different vulnerability than CVE-2012-3269.
0