Show filters
65 Total Results
Displaying 61-65 of 65
Sort by:
Attacker Value
Unknown
CVE-2011-1367
Disclosure Date: October 30, 2011 (last updated October 04, 2023)
Unspecified vulnerability in the File Load feature in IBM Rational AppScan Standard and Express 7.8.x, 7.9.x, and 8.0.x before 8.0.0.3 allows remote attackers to execute arbitrary commands via a crafted .scan file.
0
Attacker Value
Unknown
CVE-2009-3745
Disclosure Date: October 22, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the help pages in IBM Rational AppScan Enterprise Edition 5.5.0.2 allows remote attackers to inject arbitrary web script or HTML via the query string.
0
Attacker Value
Unknown
CVE-2009-1056
Disclosure Date: March 24, 2009 (last updated October 04, 2023)
IBM Rational AppScan Enterprise before 5.5 FP1 allows remote attackers to read arbitrary exported reports by "forcefully browsing."
0
Attacker Value
Unknown
CVE-2008-2015
Disclosure Date: April 30, 2008 (last updated October 04, 2023)
Multiple absolute path traversal vulnerabilities in certain ActiveX controls in WatchFire AppScan 7.0 allow remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the (1) CompactSave and (2) SaveSession method in one control, and the (3) saveRecordedExploreToFile method in a different control. NOTE: this can be leveraged for code execution by writing to a Startup folder.
0
Attacker Value
Unknown
CVE-2005-4270
Disclosure Date: December 15, 2005 (last updated February 22, 2025)
Buffer overflow in Watchfire AppScan QA 5.0.609 and 5.0.134 allows remote web servers to execute arbitrary code via an HTTP 401 response with a WWW-Authenticate header containing a long Realm field.
0