Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2016-3034

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM AppScan Source uses a one-way hash without salt to encrypt highly sensitive information, which could allow a local attacker to decrypt information more easily.
0
Attacker Value
Unknown

CVE-2016-3035

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM AppScan Source could reveal some sensitive information through the browsing of testlinks on the server.
0
Attacker Value
Unknown

CVE-2016-3033

Disclosure Date: December 01, 2016 (last updated November 25, 2024)
IBM AppScan Source 8.7 through 9.0.3.3 allows remote authenticated users to read arbitrary files or cause a denial of service (memory consumption) via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
0