CVE-2016-6118
- EPSS 0.27%
- Published 24.07.2017 21:29:00
- Last modified 20.04.2025 01:37:25
IBM Emptoris Supplier Lifecycle Management 10.1.0.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials di...
CVE-2016-6019
- EPSS 0.27%
- Published 13.07.2017 15:29:00
- Last modified 20.04.2025 01:37:25
IBM Emptoris Strategic Supply Management Platform 10.0.0.x through 10.1.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially l...
CVE-2016-8951
- EPSS 0.67%
- Published 13.07.2017 15:29:00
- Last modified 20.04.2025 01:37:25
IBM Emptoris Strategic Supply Management Platform 10.0.0.x through 10.1.1.x is vulnerable to a denial of service attack. An attacker can exploit a vulnerability in the authentication features that could log out users and flood user accounts with emai...
CVE-2016-8952
- EPSS 0.27%
- Published 13.07.2017 15:29:00
- Last modified 20.04.2025 01:37:25
IBM Emptoris Strategic Supply Management Platform 10.0.0.x through 10.1.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially l...
CVE-2015-4939
- EPSS 0.24%
- Published 06.10.2015 01:59:08
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in IBM Emptoris Supplier Lifecycle Management and Emptoris Program Management 10.x before 10.0.1.4_iFix3, 10.0.2.x before 10.0.2.7_iFix1, 10.0.3.x before 10.0.3.2, and 10.0.4.x before 10.0.4.0_iFix1 allows rem...