Show filters
354 Total Results
Displaying 41-50 of 354
Sort by:
Attacker Value
Unknown

CVE-2023-43015

Disclosure Date: December 01, 2023 (last updated December 05, 2023)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 266064.
Attacker Value
Unknown

CVE-2023-38268

Disclosure Date: December 01, 2023 (last updated December 05, 2023)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 260585.
Attacker Value
Unknown

CVE-2023-40363

Disclosure Date: November 18, 2023 (last updated November 30, 2023)
IBM InfoSphere Information Server 11.7 could allow an authenticated user to change installation files due to incorrect file permission settings. IBM X-Force ID: 263332.
Attacker Value
Unknown

CVE-2023-27513

Disclosure Date: November 14, 2023 (last updated December 01, 2023)
Uncontrolled search path element in some Intel(R) Server Information Retrieval Utility software before version 16.0.9 may allow an authenticated user to potentially enable escalation of privilege via local access.
Attacker Value
Unknown

CVE-2023-24959

Disclosure Date: August 28, 2023 (last updated October 08, 2023)
IBM InfoSphere Information Systems 11.7 could expose information about the host system and environment configuration. IBM X-Force ID: 246332.
Attacker Value
Unknown

CVE-2023-23473

Disclosure Date: August 28, 2023 (last updated October 08, 2023)
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 245400.
Attacker Value
Unknown

CVE-2023-22877

Disclosure Date: August 28, 2023 (last updated October 08, 2023)
IBM InfoSphere Information Server 11.7 is potentially vulnerable to CSV Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 244368.
Attacker Value
Unknown

CVE-2023-35898

Disclosure Date: July 19, 2023 (last updated October 08, 2023)
IBM InfoSphere Information Server 11.7 could allow an authenticated user to obtain sensitive information due to an insecure security configuration in InfoSphere Data Flow Designer. IBM X-Force ID: 259352.
Attacker Value
Unknown

CVE-2023-33857

Disclosure Date: July 17, 2023 (last updated October 08, 2023)
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain system information using a specially crafted query that could aid in further attacks against the system. IBM X-Force ID: 257695.
Attacker Value
Unknown

CVE-2023-32336

Disclosure Date: May 22, 2023 (last updated October 08, 2023)
IBM InfoSphere Information Server 11.7 is affected by a remote code execution vulnerability due to insecure deserialization in an RMI service. IBM X-Force ID: 255285.