Vulnerability index

Browse CVEs

199 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Initiate Master Data Service MEDIUM 6.0
CVE-2014-4785

Cross-site request forgery (CSRF) vulnerability in IBM Initiate Master Data Service 9.5 before 9.5.093013, 9.7 before 9.7.093013, 10.0 before 10.0.09…

Patch available
Fix from $1,600 2014-09-10
Initiate Master Data Service MEDIUM 6.8
CVE-2014-4783

Cross-site request forgery (CSRF) vulnerability in IBM Initiate Master Data Service 9.5 before 9.5.093013, 9.7 before 9.7.093013, 10.0 before 10.0.09…

Patch available
Fix from $1,600 2014-09-10
Rational Rhapsody Design Manager MEDIUM 6.0
CVE-2014-3037

Cross-site request forgery (CSRF) vulnerability in IBM Configuration Management Application (aka VVC) in IBM Rational Engineering Lifecycle Manager b…

Fix: after 4.06
Fix from $1,600 2014-09-10
Smartcloud Control Desk MEDIUM 6.0
CVE-2014-3024

Cross-site request forgery (CSRF) vulnerability in IBM Maximo Asset Management 7.1 through 7.1.1.12 and 7.5 through 7.5.0.6 and Maximo Asset Manageme…

Mitigation only
Fix from $1,600 2014-08-29
Emptoris Spend Analysis MEDIUM 6.8
CVE-2014-3061

Cross-site request forgery (CSRF) vulnerability in IBM Emptoris Spend Analysis 9.5.x before 9.5.0.4, 10.0.1.x before 10.0.1.3, and 10.0.2.x before 10…

Mitigation only
Fix from $1,600 2014-08-26
Emptoris Spend Analysis MEDIUM 6.0
CVE-2014-3040

Cross-site request forgery (CSRF) vulnerability in IBM Emptoris Contract Management 9.5.x before 9.5.0.6 iFix 10, 10.0.0.x before 10.0.0.1 iFix 10, 1…

Mitigation only
Fix from $1,600 2014-08-26
Infosphere Master Data Management MEDIUM 6.8
CVE-2014-0969

Cross-site request forgery (CSRF) vulnerability in the GDS component in IBM InfoSphere Master Data Management - Collaborative Edition 10.x and 11.x b…

Patch available
Fix from $1,600 2014-08-17
Algo Credit Limits MEDIUM 6.8
CVE-2014-0864

Multiple cross-site request forgery (CSRF) vulnerabilities in Executer in RICOS in IBM Algo Credit Limits (aka ACLM) 4.5.0 through 4.7.0 before 4.7.0…

No fix yet
Fix from $1,600 2014-07-07
Connections MEDIUM 6.0
CVE-2014-0929

Cross-site request forgery (CSRF) vulnerability in the Profiles component in IBM Connections through 3.0.1.1 CR3 allows remote authenticated users to…

Fix: after 3.0.1.1
Fix from $1,600 2014-06-08
Security Identity Manager MEDIUM 6.0
CVE-2014-0961

Cross-site request forgery (CSRF) vulnerability in IBM Tivoli Identity Manager (ITIM) 5.0 before 5.0.0.15 and 5.1 before 5.1.0.15 and IBM Security Id…

Mitigation only
Fix from $1,600 2014-06-08
Sametime Proxy Server And Web Client MEDIUM 6.8
CVE-2014-3015

Cross-site request forgery (CSRF) vulnerability in the Web player in IBM Sametime Proxy Server and Web Client 9.0 through 9.0.0.1 allows remote attac…

Mitigation only
Fix from $1,600 2014-05-26
Infosphere Information Server Metadata Workbench MEDIUM 6.8
CVE-2014-0933

Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Information Server Metadata Workbench 8.1 through 9.1 allows remote attackers to hi…

Mitigation only
Fix from $1,600 2014-05-16
Operational Decision Manager MEDIUM 6.0
CVE-2014-0944

Cross-site request forgery (CSRF) vulnerability in the RES Console in Rule Execution Server in IBM Operational Decision Manager 7.5 before FP3 IF37, …

Mitigation only
Fix from $1,600 2014-05-09
Lotus Protector For Mail Security MEDIUM 6.8
CVE-2014-0885

Cross-site request forgery (CSRF) vulnerability in the Admin Web UI in IBM Lotus Protector for Mail Security 2.8.x before 2.8.1-22905 allows remote a…

Mitigation only
Fix from $1,600 2014-03-25
Cognos Express MEDIUM 6.8
CVE-2013-5443

Cross-site request forgery (CSRF) vulnerability in IBM Cognos Express 9.0 before IFIX 2, 9.5 before IFIX 2, 10.1 before IFIX 2, and 10.2.1 before FP1…

Mitigation only
Fix from $1,600 2014-03-25
Infosphere Master Data Management Server MEDIUM 6.8
CVE-2014-0873

Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) Data Stewardship, (2) Business Admin, and (3) Product interfaces in IBM InfoSph…

Mitigation only
Fix from $1,600 2014-03-16
Infosphere Information Server MEDIUM 6.8
CVE-2013-4057

Cross-site request forgery (CSRF) vulnerability in the XML Pack in IBM InfoSphere Information Server 8.5.x through 8.5 FP3, 8.7.x through 8.7 FP2, an…

Mitigation only
Fix from $1,600 2014-03-16
Infosphere Master Data Management Collaboration Server MEDIUM 6.8
CVE-2013-5427

Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Master Data Management - Collaborative Edition 10.x before 10.1 FP8 through 11.0 an…

Mitigation only
Fix from $1,600 2014-02-04
Financial Transaction Manager MEDIUM 6.8
CVE-2014-0831

Cross-site request forgery (CSRF) vulnerability in the OAC component in IBM Financial Transaction Manager (FTM) 2.0 before 2.0.0.3 allows remote atta…

Mitigation only
Fix from $1,600 2014-02-01
Qradar Security Information And Event Manager MEDIUM 6.8
CVE-2014-0835

Cross-site request forgery (CSRF) vulnerability in IBM Security QRadar SIEM 7.2 MR1 and earlier allows remote attackers to hijack the authentication …

Fix: after 7.2.0
Fix from $1,600 2014-01-30
Cognos Command Center MEDIUM 6.8
CVE-2013-4000

Multiple cross-site request forgery (CSRF) vulnerabilities in IBM Cognos Command Center before 10.2 allow remote attackers to hijack the authenticati…

Fix: after 10.1
Fix from $1,600 2013-12-14
Lotus Domino MEDIUM 6.0
CVE-2013-4050

Cross-site request forgery (CSRF) vulnerability in webadmin.nsf in Domino Web Administrator in IBM Domino 8.5 and 9.0 allows remote authenticated use…

Mitigation only
Fix from $1,600 2013-11-08
Infosphere Information Server MEDIUM 6.8
CVE-2013-4056

Cross-site request forgery (CSRF) vulnerability in the Data Quality Console and Information Analyzer components in IBM InfoSphere Information Server …

Mitigation only
Fix from $1,600 2013-10-13
Rational Clearquest MEDIUM 6.8
CVE-2013-0598

Cross-site request forgery (CSRF) vulnerability in the Web Client in IBM Rational ClearQuest 7.1 before 7.1.2.12, 8.0 before 8.0.0.8, and 8.0.1 befor…

Mitigation only
Fix from $1,600 2013-09-28
Websphere Application Server MEDIUM 6.8
CVE-2013-3029

Cross-site request forgery (CSRF) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 befo…

Mitigation only
Fix from $1,600 2013-08-21
Infosphere Biginsights MEDIUM 6.0
CVE-2013-3992

Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere BigInsights 2.0 through 2.1 allows remote authenticated users to hijack the authent…

Mitigation only
Fix from $1,600 2013-08-06
Data Studio MEDIUM 6.8
CVE-2013-2980

Cross-site request forgery (CSRF) vulnerability in the Web Console in IBM Data Studio 3.1.0 and 3.1.1 allows remote attackers to hijack the authentic…

Mitigation only
Fix from $1,600 2013-06-17
Tririga Application Platform MEDIUM 6.8
CVE-2012-5950

Multiple cross-site request forgery (CSRF) vulnerabilities in IBM TRIRIGA Application Platform 2.x and 3.x before 3.3, and 8, allow remote attackers …

Mitigation only
Fix from $1,600 2013-04-23
Security Appscan MEDIUM 6.8
CVE-2013-0532

Cross-site request forgery (CSRF) vulnerability in IBM Security AppScan Enterprise 5.6 and 8.x before 8.7 and IBM Rational Policy Tester 5.6 and 8.x …

Mitigation only
Fix from $1,600 2013-03-29
Software Use Analysis MEDIUM 6.8
CVE-2013-0452

Cross-site request forgery (CSRF) vulnerability in the Software Use Analysis (SUA) application before 1.3.3 in IBM Tivoli Endpoint Manager 8.2 allows…

Fix: after 1.3.2
Fix from $1,600 2013-03-29