CVE-2022-22322
- EPSS 0.22%
- Veröffentlicht 28.04.2022 16:15:08
- Zuletzt bearbeitet 21.11.2024 06:46:38
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure with...
CVE-2022-22427
- EPSS 0.19%
- Veröffentlicht 28.04.2022 16:15:08
- Zuletzt bearbeitet 21.11.2024 06:46:47
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure with...
CVE-2022-22441
- EPSS 0.19%
- Veröffentlicht 28.04.2022 16:15:08
- Zuletzt bearbeitet 21.11.2024 06:46:48
IBM InfoSphere Information Server 11.7 could allow an authenticated user to view information of higher privileged users and groups due to a privilege escalation vulnerability. IBM X-Force ID: 224426.
CVE-2022-22443
- EPSS 0.22%
- Veröffentlicht 28.04.2022 16:15:08
- Zuletzt bearbeitet 21.11.2024 06:46:48
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure with...
CVE-2021-38952
- EPSS 0.22%
- Veröffentlicht 28.04.2022 16:15:07
- Zuletzt bearbeitet 21.11.2024 06:18:17
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure with...
CVE-2021-38887
- EPSS 0.16%
- Veröffentlicht 10.11.2021 15:15:11
- Zuletzt bearbeitet 21.11.2024 06:18:09
IBM InfoSphere Information Server 11.7 could allow an authenticated user to obtain sensitive information from application response requests that could be used in further attacks against the system. IBM X-Force ID: 209401.
CVE-2021-29737
- EPSS 0.12%
- Veröffentlicht 02.11.2021 16:15:07
- Zuletzt bearbeitet 21.11.2024 06:01:42
IBM InfoSphere Data Flow Designer Engine (IBM InfoSphere Information Server 11.7 ) component has improper validation of the REST API server certificate. IBM X-Force ID: 201301.
CVE-2021-29738
- EPSS 0.16%
- Veröffentlicht 02.11.2021 16:15:07
- Zuletzt bearbeitet 21.11.2024 06:01:42
IBM InfoSphere Data Flow Designer (IBM InfoSphere Information Server 11.7 ) is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network en...
CVE-2021-29771
- EPSS 0.16%
- Veröffentlicht 02.11.2021 16:15:07
- Zuletzt bearbeitet 21.11.2024 06:01:46
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure with...
CVE-2021-29875
- EPSS 0.21%
- Veröffentlicht 02.11.2021 16:15:07
- Zuletzt bearbeitet 21.11.2024 06:01:57
IBM InfoSphere Information Server 11.7 could allow an attacker to obtain sensitive information due to a insecure third party domain access vulnerability. IBM X-Force ID: 206572.