Ibm

I2 Analyze

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 26.07.2021 12:15:08
  • Zuletzt bearbeitet 21.11.2024 05:46:34

IBM i2 Analyst's Notebook Premium (IBM i2 Analyze 4.3.0, 4.3.1, and 4.3.2) could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further att...

  • EPSS 0.18%
  • Veröffentlicht 26.07.2021 12:15:08
  • Zuletzt bearbeitet 21.11.2024 06:01:45

IBM i2 Analyst's Notebook Premium (IBM i2 Analyze 4.3.0, 4.3.1, and 4.3.2) could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further att...

  • EPSS 0.08%
  • Veröffentlicht 26.07.2021 12:15:08
  • Zuletzt bearbeitet 21.11.2024 06:01:46

IBM i2 Analyst's Notebook Premium (IBM i2 Analyze 4.3.0, 4.3.1, and 4.3.2) does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting...

  • EPSS 0.13%
  • Veröffentlicht 26.07.2021 12:15:08
  • Zuletzt bearbeitet 21.11.2024 06:01:46

IBM i2 Analyst's Notebook Premium (IBM i2 Analyze 4.3.0, 4.3.1, and 4.3.2) could allow an authenticated user to perform unauthorized actions due to hazardous input validation. IBM X-Force ID: 202771.

  • EPSS 0.09%
  • Veröffentlicht 26.07.2021 12:15:08
  • Zuletzt bearbeitet 21.11.2024 06:01:48

IBM i2 Analyze 4.3.0, 4.3.1, and 4.3.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force...