|
195061
|
8.8 |
HIGH
Network
|
ibm
|
cloud_pak_for_applications
|
IBM Cloud Pak for Applications 4.3 could allow an authenticated user gain escalated privilesges due to improper application permissions. IBM X-Force ID: 196308.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2021-20423
|
2024-11-21 14:46 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195062
|
7.5 |
HIGH
Network
|
ibm
|
cloud_pak_for_applications
|
IBM Cloud Pak for Applications 4.3 could disclose sensitive information to a malicious attacker by accessing data stored in memory. IBM X-Force ID: 196304.
|
NVD-CWE-noinfo
|
CVE-2021-20422
|
2024-11-21 14:46 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195063
|
5.9 |
MEDIUM
Network
|
ibm
|
cloud_pak_for_applications
|
IBM Cloud Pak for Applications 4.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 195361.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2021-20369
|
2024-11-21 14:46 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195064
|
5.4 |
MEDIUM
Network
|
ibm
|
cloud_pak_for_applications
|
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality pot…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20368
|
2024-11-21 14:46 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195065
|
5.4 |
MEDIUM
Network
|
ibm
|
cloud_pak_for_applications
|
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality pot…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20366
|
2024-11-21 14:46 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195066
|
5.4 |
MEDIUM
Network
|
ibm
|
cloud_pak_for_applications
|
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality pot…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20365
|
2024-11-21 14:46 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195067
|
5.4 |
MEDIUM
Network
|
ibm
|
cloud_pak_for_applications
|
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality pot…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20364
|
2024-11-21 14:46 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195068
|
5.4 |
MEDIUM
Network
|
ibm
|
cloud_pak_for_applications
|
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality pot…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20363
|
2024-11-21 14:46 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195069
|
5.4 |
MEDIUM
Network
|
ibm
|
cloud_pak_for_applications
|
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality pot…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20362
|
2024-11-21 14:46 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195070
|
5.4 |
MEDIUM
Network
|
ibm
|
cloud_pak_for_applications
|
IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality pot…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20361
|
2024-11-21 14:46 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|