Show filters
79 Total Results
Displaying 71-79 of 79
Sort by:
Attacker Value
Unknown

CVE-2012-4834

Disclosure Date: November 30, 2012 (last updated October 05, 2023)
Directory traversal vulnerability in LayerLoader.jsp in the theme component in IBM WebSphere Portal 7.0.0.1 and 7.0.0.2 before CF19 and 8.0 before CF03 allows remote attackers to read arbitrary files via a crafted URI.
0
Attacker Value
Unknown

CVE-2012-2181

Disclosure Date: July 03, 2012 (last updated October 04, 2023)
Directory traversal vulnerability in the Dojo module in IBM WebSphere Portal 7.0.0.1 and 7.0.0.2 before CF14, and 8.0, allows remote attackers to read arbitrary files via a crafted URL.
0
Attacker Value
Unknown

CVE-2011-2754

Disclosure Date: July 17, 2011 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the PageBuilder2 (aka Page Builder) theme in IBM WebSphere Portal 7.x before 7.0.0.1 CF006, as used in IBM Web Content Manager (WCM) and other products, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2011-2173

Disclosure Date: May 26, 2011 (last updated October 04, 2023)
The implementation of OutputMediator objects in IBM WebSphere Portal 6.0.1.7, and 7.0.0.1 before CF002, allows remote authenticated users to cause a denial of service (memory consumption) via requests.
0
Attacker Value
Unknown

CVE-2011-2172

Disclosure Date: May 26, 2011 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the search center in IBM WebSphere Portal 7.0.0.1 before CF004 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2011-0679

Disclosure Date: January 28, 2011 (last updated October 04, 2023)
IBM WebSphere Portal 6.0.1.1 through 7.0.0.0, as used in IBM Lotus Web Content Management (WCM) and IBM Lotus Quickr for WebSphere Portal, allows remote attackers to obtain sensitive information via a "modified message."
0
Attacker Value
Unknown

CVE-2009-1008

Disclosure Date: April 15, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML, a different vulnerability than CVE-2009-1010.
0
Attacker Value
Unknown

CVE-2009-1010

Disclosure Date: April 15, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML, a different vulnerability than CVE-2009-1008.
0
Attacker Value
Unknown

CVE-2009-1009

Disclosure Date: April 15, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.1.9 allows local users to affect confidentiality, integrity, and availability, related to HTML.
0