CVE-2023-30435
- EPSS 0.1%
- Veröffentlicht 27.08.2023 23:15:33
- Zuletzt bearbeitet 21.11.2024 08:00:10
IBM Security Guardium 11.3, 11.4, and 11.5 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disc...
CVE-2023-30436
- EPSS 0.1%
- Veröffentlicht 27.08.2023 23:15:33
- Zuletzt bearbeitet 21.11.2024 08:00:10
IBM Security Guardium 11.3, 11.4, and 11.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure ...
CVE-2022-43907
- EPSS 0.1%
- Veröffentlicht 27.08.2023 23:15:28
- Zuletzt bearbeitet 21.11.2024 07:27:20
IBM Security Guardium 11.4 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 240901.
CVE-2023-35893
- EPSS 0.2%
- Veröffentlicht 16.08.2023 22:15:13
- Zuletzt bearbeitet 21.11.2024 08:08:56
IBM Security Guardium 10.6, 11.3, 11.4, and 11.5 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 258824.
CVE-2022-43910
- EPSS 0.02%
- Veröffentlicht 19.07.2023 03:15:10
- Zuletzt bearbeitet 21.11.2024 07:27:21
IBM Security Guardium 11.3 could allow a local user to escalate their privileges due to improper permission controls. IBM X-Force ID: 240908.
CVE-2022-43908
- EPSS 0.05%
- Veröffentlicht 19.07.2023 02:15:09
- Zuletzt bearbeitet 21.11.2024 07:27:21
IBM Security Guardium 11.3 could allow an authenticated user to cause a denial of service due to improper input validation. IBM X-Force ID: 240903.
CVE-2022-22307
- EPSS 0.02%
- Veröffentlicht 15.06.2023 01:15:09
- Zuletzt bearbeitet 21.11.2024 06:46:36
IBM Security Guardium 11.3, 11.4, and 11.5 could allow a local user to obtain elevated privileges due to incorrect authorization checks. IBM X-Force ID: 216753.
CVE-2023-0041
- EPSS 0.05%
- Veröffentlicht 05.06.2023 01:15:45
- Zuletzt bearbeitet 21.11.2024 07:36:26
IBM Security Guardium 11.5 could allow a user to take over another user's session due to insufficient session expiration. IBM X-Force ID: 243657.
CVE-2022-39166
- EPSS 0.06%
- Veröffentlicht 20.12.2022 21:15:10
- Zuletzt bearbeitet 21.11.2024 07:17:42
IBM Security Guardium 11.4 could allow a privileged user to obtain sensitive information inside of an HTTP response. IBM X-Force ID: 235405.
CVE-2021-39077
- EPSS 0.01%
- Veröffentlicht 03.11.2022 20:15:24
- Zuletzt bearbeitet 23.07.2025 21:15:25
IBM Security Guardium 10.5, 10.6, 11.0, 11.1, 11.2, 11.3, and 11.4 stores user credentials in plain clear text which can be read by a local privileged user. IBM X-Force ID: 215587.