Show filters
16 Total Results
Displaying 1-10 of 16
Sort by:
Attacker Value
Unknown

CVE-2017-1465

Disclosure Date: December 07, 2017 (last updated November 26, 2024)
IBM TRIRIGA 3.2, 3.3, 3.4, and 3.5 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 128464.
0
Attacker Value
Unknown

CVE-2017-1372

Disclosure Date: July 21, 2017 (last updated November 26, 2024)
IBM TRIRIGA Application Platform 3.3, 3.4, and 3.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 126865.
0
Attacker Value
Unknown

CVE-2017-1371

Disclosure Date: July 21, 2017 (last updated November 26, 2024)
Builder tools running in the IBM TRIRIGA Application Platform 3.3, 3.4, and 3.5 contains a vulnerability that could allow an authenticated user to execute Builder tool actions they do not have access to. IBM X-Force ID: 126864.
0
Attacker Value
Unknown

CVE-2017-1374

Disclosure Date: July 21, 2017 (last updated November 26, 2024)
Sensitive data can be exposed in the IBM TRIRIGA Application Platform 3.3, 3.4, and 3.5 that can lead to an attacker gaining unauthorized access to the system. IBM X-Force ID: 126867.
0
Attacker Value
Unknown

CVE-2017-1373

Disclosure Date: July 21, 2017 (last updated November 26, 2024)
Reports executed in the IBM TRIRIGA Application Platform 3.3, 3.4, and 3.5 contains a vulnerability that could allow an authenticated user to execute a report they do not have access to. IBM X-Force ID: 126866.
0
Attacker Value
Unknown

CVE-2017-1171

Disclosure Date: March 31, 2017 (last updated November 26, 2024)
The IBM TRIRIGA Application Platform 3.3, 3,4, and 3,5 contain a vulnerability that could allow an authenticated user to execute Application actions they do not have access to. IBM Reference #: 2001083.
0
Attacker Value
Unknown

CVE-2016-9737

Disclosure Date: March 27, 2017 (last updated November 26, 2024)
IBM TRIRIGA 3.3, 3.4, and 3.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 1996200.
0
Attacker Value
Unknown

CVE-2017-1153

Disclosure Date: March 27, 2017 (last updated November 26, 2024)
IBM TRIRIGA Report Manager 3.2 through 3.5 contains a vulnerability that could allow an authenticated user to execute actions that they do not have access to. IBM Reference #: 1999563.
0
Attacker Value
Unknown

CVE-2016-5980

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM TRIRIGA Application Platform is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0
Attacker Value
Unknown

CVE-2016-6000

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM TRIRIGA Application Platform is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0