CVE-2013-4022
- EPSS 0.14%
- Veröffentlicht 25.09.2013 10:31:29
- Zuletzt bearbeitet 11.04.2025 00:51:21
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x store unspecified authentication information in a cookie, which allows remote aut...
CVE-2013-4024
- EPSS 0.21%
- Veröffentlicht 25.09.2013 10:31:29
- Zuletzt bearbeitet 11.04.2025 00:51:21
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x support HTTP access to the Web Console, which allows remote attackers to read ses...
CVE-2013-4025
- EPSS 0.08%
- Veröffentlicht 25.09.2013 10:31:29
- Zuletzt bearbeitet 11.04.2025 00:51:21
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x do not have an off autocomplete attribute for the login-password field, which mak...