Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2024-41774
Disclosure Date: August 13, 2024 (last updated August 23, 2024)
IBM Common Licensing 9.0 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 350348.
0
Attacker Value
Unknown
CVE-2024-40697
Disclosure Date: August 13, 2024 (last updated August 23, 2024)
IBM Common Licensing 9.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 297895.
0
Attacker Value
Unknown
CVE-2023-50306
Disclosure Date: February 20, 2024 (last updated February 13, 2025)
IBM Common Licensing 9.0 could allow a local user to enumerate usernames due to an observable response discrepancy. IBM X-Force ID: 273337.
0