CVE-2023-50964
- EPSS 0.14%
- Veröffentlicht 30.06.2024 19:15:02
- Zuletzt bearbeitet 21.11.2024 08:37:37
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure with...
CVE-2024-28794
- EPSS 0.27%
- Veröffentlicht 30.06.2024 19:15:02
- Zuletzt bearbeitet 21.11.2024 09:06:56
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure with...
CVE-2024-28797
- EPSS 0.27%
- Veröffentlicht 30.06.2024 18:15:03
- Zuletzt bearbeitet 21.11.2024 09:06:56
IBM InfoSphere Information Server 11.7 is vulnerable stored to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosu...
CVE-2024-31898
- EPSS 0.03%
- Veröffentlicht 30.06.2024 18:15:03
- Zuletzt bearbeitet 21.11.2024 09:14:06
IBM InfoSphere Information Server 11.7 could allow an authenticated user to read or modify sensitive information by bypassing authentication using insecure direct object references. IBM X-Force ID: 288182.
CVE-2023-50952
- EPSS 0.08%
- Veröffentlicht 30.06.2024 18:15:02
- Zuletzt bearbeitet 21.11.2024 08:37:35
IBM InfoSphere Information Server 11.7 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attac...
CVE-2023-50953
- EPSS 0.09%
- Veröffentlicht 30.06.2024 18:15:02
- Zuletzt bearbeitet 21.11.2024 08:37:36
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned. This information could be used in further attacks against the system. IBM X-Force ID: 275775.
CVE-2024-35119
- EPSS 0.1%
- Veröffentlicht 30.06.2024 17:15:03
- Zuletzt bearbeitet 21.11.2024 09:19:48
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in a stack trace. This information could be used in further attacks against the system. IBM X-F...
CVE-2023-50954
- EPSS 0.15%
- Veröffentlicht 30.06.2024 17:15:02
- Zuletzt bearbeitet 21.11.2024 08:37:36
IBM InfoSphere Information Server 11.7 returns sensitive information in URL information that could be used in further attacks against the system. IBM X-Force ID: 275776.
CVE-2024-28798
- EPSS 0.39%
- Veröffentlicht 30.06.2024 17:15:02
- Zuletzt bearbeitet 21.11.2024 09:06:56
IBM InfoSphere Information Server 11.7 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosu...
CVE-2024-31902
- EPSS 0.14%
- Veröffentlicht 30.06.2024 17:15:02
- Zuletzt bearbeitet 21.11.2024 09:14:06
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 289234.