Ibm

Openpages With Watson

24 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.07%
  • Published 20.02.2025 12:15:10
  • Last modified 11.03.2025 14:02:39

IBM OpenPages with Watson 8.3 and 9.0 IBM OpenPages with Watson Assistant chat feature enabled the application establishes a session when a user logs in and uses chat, but the chat session is still left active after logout.

  • EPSS 0.08%
  • Published 20.02.2025 12:15:09
  • Last modified 11.03.2025 14:06:18

IBM OpenPages with Watson 8.3 and 9.0 IBM OpenPages is vulnerable to HTML injection, caused by improper validation of user-supplied input of text fields used to construct workflow email notifications. A remote authenticated attacker could explo...

  • EPSS 0.17%
  • Published 20.02.2025 04:15:10
  • Last modified 11.03.2025 14:19:11

IBM OpenPages with Watson 8.3 and 9.0  could allow a remote attacker to spoof mail server identity when using SSL/TLS security. An attacker could exploit this vulnerability to gain access to sensitive information disclosed through email notificati...

  • EPSS 0.05%
  • Published 20.02.2025 04:15:10
  • Last modified 11.03.2025 14:37:00

IBM OpenPages with Watson 8.3 and 9.0 IBM OpenPages could allow a remote attacker to traverse directories on the system. An attacker with privileges to perform Import Configuration could send a specially crafted http request containing "dot dot" sequ...

  • EPSS 0.07%
  • Published 20.02.2025 04:15:10
  • Last modified 11.03.2025 14:51:01

IBM OpenPages with Watson 8.3 and 9.0 may write improperly neutralized data to server log files when the tracing is enabled per the System Tracing feature.

  • EPSS 0.08%
  • Published 20.02.2025 04:15:09
  • Last modified 11.03.2025 14:57:13

IBM OpenPages with Watson 8.3 and 9.0  application could allow an authenticated user to manipulate data in the Questionnaires application allowing the user to spoof other users' responses.

  • EPSS 0.05%
  • Published 27.01.2025 16:15:30
  • Last modified 11.03.2025 18:14:30

IBM OpenPages with Watson 8.3 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials ...

  • EPSS 0.07%
  • Published 09.01.2025 14:15:26
  • Last modified 29.09.2025 22:26:24

IBM OpenPages 9.0 could allow an authenticated user to obtain sensitive information such as configurations that should only be available to privileged users.

  • EPSS 0.06%
  • Published 11.12.2024 02:15:05
  • Last modified 10.03.2025 18:12:39

IBM OpenPages with Watson 9.0 may write sensitive information, under specific configurations, in clear text to the system tracing log files that could be obtained by a privileged user.

  • EPSS 0.07%
  • Published 10.09.2024 15:15:15
  • Last modified 16.09.2024 14:26:15

IBM OpenPages 8.3 and 9.0 potentially exposes information about client-side source code through use of JavaScript source maps to unauthorized users.