|
218981
|
5.4 |
MEDIUM
Network
|
ibm
|
sterling_b2b_integrator
|
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended …
|
CWE-79
Cross-site Scripting
|
CVE-2019-4029
|
2024-11-21 13:43 |
2019-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218982
|
5.4 |
MEDIUM
Network
|
ibm
|
sterling_b2b_integrator
|
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended …
|
CWE-79
Cross-site Scripting
|
CVE-2019-4028
|
2024-11-21 13:43 |
2019-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218983
|
5.4 |
MEDIUM
Network
|
ibm
|
sterling_b2b_integrator
|
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended …
|
CWE-79
Cross-site Scripting
|
CVE-2019-4027
|
2024-11-21 13:43 |
2019-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218984
|
5.3 |
MEDIUM
Network
|
ibm
|
bigfix_platform
|
IBM BigFix Platform 9.2 and 9.5 could allow an attacker to query the relay remotely and gather information about the updates and fixlets deployed to the associated sites due to not enabling authentic…
|
CWE-200
Information Exposure
|
CVE-2019-4061
|
2024-11-21 13:43 |
2019-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218985
|
9.8 |
CRITICAL
Network
|
ibm
|
rational_clearcase
|
IBM Rational ClearCase 1.0.0.0 GIT connector does not sufficiently protect the document database password. An attacker could obtain the password and gain unauthorized access to the document database.…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-4059
|
2024-11-21 13:43 |
2019-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218986
|
9.8 |
CRITICAL
Network
|
ibm
|
api_connect
|
API Connect V2018.1 through 2018.4.1.1 is impacted by access token leak. Authorization tokens in some URLs can result in the tokens being written to log files. IBM X-Force ID: 155626.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2019-4008
|
2024-11-21 13:43 |
2019-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218987
|
6.2 |
MEDIUM
Physics
|
ibm
|
security_identity_manager
|
IBM Security Identity Manager 6.0 and 7.0 could allow an attacker to create unexpected control flow paths through the application, potentially bypassing security checks. Exploitation of this weakness…
|
CWE-94
Code Injection
|
CVE-2019-4038
|
2024-11-21 13:43 |
2019-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218988
|
6.1 |
MEDIUM
Network
|
ibm
|
i
|
IBM I 7.2 and 7.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading …
|
CWE-79
Cross-site Scripting
|
CVE-2019-4040
|
2024-11-21 13:43 |
2019-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218989
|
8.1 |
HIGH
Network
|
facebook
|
hhvm
|
HHVM supports the use of an "admin" server which accepts administrative requests over HTTP. One of those request handlers, dump-pcre-cache, can be used to output cached regular expressions from the c…
|
CWE-22
Path Traversal
|
CVE-2019-3556
|
2024-11-21 13:42 |
2021-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218990
|
8.2 |
HIGH
Network
|
dell
|
emc_integrated_data_protection_appliance emc_avamar_server
|
Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2 and 19.1 and Dell EMC Integrated Data Protection Appliance (IDPA) versions 2.0, 2.1, 2.2, 2.3 and 2.4. contain an XML External Entity(XXE) In…
|
CWE-611
XXE
|
CVE-2019-3752
|
2024-11-21 13:42 |
2021-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|