CVE-2014-0936
- EPSS 0.24%
- Veröffentlicht 08.06.2014 23:55:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by s...
CVE-2012-2159
- EPSS 0.25%
- Veröffentlicht 20.06.2012 10:27:28
- Zuletzt bearbeitet 29.04.2026 01:13:23
Open redirect vulnerability in IBM Eclipse Help System (IEHS), as used in IBM Security AppScan Source 7.x and 8.x before 8.6 and IBM SPSS Data Collection Developer Library 6.0 and 6.0.1, allows remote attackers to redirect users to arbitrary web site...
CVE-2012-2161
- EPSS 0.29%
- Veröffentlicht 20.06.2012 10:27:28
- Zuletzt bearbeitet 29.04.2026 01:13:23
Cross-site scripting (XSS) vulnerability in deferredView.jsp in IBM Eclipse Help System (IEHS), as used in IBM Security AppScan Source 7.x and 8.x before 8.6 and IBM SPSS Data Collection Developer Library 6.0 and 6.0.1, allows remote attackers to inj...
- EPSS 0.23%
- Veröffentlicht 20.06.2012 10:27:28
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ODBC driver in IBM Security AppScan Source 7.x and 8.x before 8.6 sends an SHA-1 hash of the connection password during connections to a solidDB database, which allows remote attackers to obtain sensitive information by sniffing the network.