CVE-2014-6154
- EPSS 0.38%
- Veröffentlicht 13.02.2015 02:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Directory traversal vulnerability in IBM Optim Performance Manager for DB2 4.1.0.1 through 4.1.1 on Linux, UNIX, and Windows and IBM InfoSphere Optim Performance Manager for DB2 5.1 through 5.3.1 on Linux, UNIX, and Windows allows remote attackers to...
CVE-2013-4022
- EPSS 0.14%
- Veröffentlicht 25.09.2013 10:31:29
- Zuletzt bearbeitet 11.04.2025 00:51:21
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x store unspecified authentication information in a cookie, which allows remote aut...
CVE-2013-4024
- EPSS 0.21%
- Veröffentlicht 25.09.2013 10:31:29
- Zuletzt bearbeitet 11.04.2025 00:51:21
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x support HTTP access to the Web Console, which allows remote attackers to read ses...
CVE-2013-4025
- EPSS 0.08%
- Veröffentlicht 25.09.2013 10:31:29
- Zuletzt bearbeitet 11.04.2025 00:51:21
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x do not have an off autocomplete attribute for the login-password field, which mak...
- EPSS 0.2%
- Veröffentlicht 22.08.2013 22:55:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Directory traversal vulnerability in IBM Optim Performance Manager 4.1.1 and IBM InfoSphere Optim Performance Manager 5.x before 5.2 allows remote authenticated users to read arbitrary files via a crafted URL.