Vulnerability index

Browse CVEs

1,094 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
Security Guardium MEDIUM 5.4
CVE-2021-29735

IBM Security Guardium 10.5, 10.6, 11.0, 11.1, 11.2, and 11.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrar…

Mitigation only
Fix from $1,600 2021-11-08
Infosphere Information Server MEDIUM 5.4
CVE-2021-29771

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in t…

Patch available
Fix from $1,600 2021-11-02
Engineering Lifecycle Optimization MEDIUM 5.4
CVE-2021-29673

IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web U…

Patch available
Fix from $1,600 2021-10-27
Engineering Lifecycle Optimization MEDIUM 5.4
CVE-2021-29713

IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web U…

Patch available
Fix from $1,600 2021-10-27
Business Automation Workflow MEDIUM 6.1
CVE-2021-29835

IBM Business Automation Workflow 18.0, 19.0, 20.0, and 21.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary…

Patch available
Fix from $1,600 2021-10-22
Qradar Advisor MEDIUM 6.1
CVE-2021-38896

IBM QRadar Advisor 2.5 through 2.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the…

Fix: after 2.6.1
Fix from $1,600 2021-10-20
Security Risk Manager On Cp4s MEDIUM 5.4
CVE-2021-29912

IBM Security Risk Manager on CP4S 1.7.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code i…

Patch available
Fix from $1,600 2021-10-19
Business Automation Workflow MEDIUM 5.4
CVE-2021-29878

IBM Business Automation Workflow 18.0, 19.0, 20.0, and 21.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary…

Patch available
Fix from $1,600 2021-10-18
Sterling File Gateway MEDIUM 6.1
CVE-2021-20481

IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScrip…

Fix: after 6.1.0.1
Fix from $1,600 2021-10-07
Sterling B2b Integrator MEDIUM 6.1
CVE-2021-20561

IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScrip…

Fix: after 6.1.0.2
Fix from $1,600 2021-10-07
Sterling B2b Integrator MEDIUM 5.4
CVE-2021-20571

IBM Sterling B2B Integrator 5.2.0.0 through 6.1.1.0 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary …

Fix: after 6.1.0.3
Fix from $1,600 2021-10-07
Sterling B2b Integrator MEDIUM 5.4
CVE-2021-29764

IBM Sterling B2B Integrator 5.2.0.0 through 6.1.1.0 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary …

Fix: after 6.1.0.3
Fix from $1,600 2021-10-06
Sterling B2b Integrator MEDIUM 5.4
CVE-2021-29836

IBM Sterling B2B Integrator Standard Edition 5.2.0.0. through 6.1.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed…

Fix: after 6.1.0.3
Fix from $1,600 2021-10-06
Sterling B2b Integrator MEDIUM 5.4
CVE-2021-29855

IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed …

Fix: after 6.1.0.3
Fix from $1,600 2021-10-06
Sterling Order Management MEDIUM 6.1
CVE-2021-20554

IBM Sterling Order Management 9.4, 9.5, and 10.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript…

Patch available
Fix from $1,600 2021-09-30
Business Automation Workflow MEDIUM 5.4
CVE-2021-29834

IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, 19.0.0.3,20.0.0.1, 20.0.0.2, and 21.0.2 and IBM Business Process M…

Patch available
Fix from $1,600 2021-09-29
Jazz For Service Management MEDIUM 5.4
CVE-2021-29813

IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows u…

Patch available
Fix from $1,600 2021-09-23
Jazz For Service Management MEDIUM 5.4
CVE-2021-29814

IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows u…

Patch available
Fix from $1,600 2021-09-23
Jazz For Service Management MEDIUM 5.4
CVE-2021-29815

IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows u…

Patch available
Fix from $1,600 2021-09-23
Jazz For Service Management MEDIUM 5.4
CVE-2021-29832

IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows u…

Patch available
Fix from $1,600 2021-09-23
Jazz For Service Management MEDIUM 5.4
CVE-2021-29833

IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows u…

Patch available
Fix from $1,600 2021-09-23
Jazz For Service Management MEDIUM 5.4
CVE-2021-29905

IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to cross-site scripting. This vulnerability allows users to…

Patch available
Fix from $1,600 2021-09-23
Aspera On Cloud MEDIUM 5.4
CVE-2021-38870

IBM Aspera Cloud is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus …

Mitigation only
Fix from $1,600 2021-09-23
Jazz For Service Management MEDIUM 5.4
CVE-2021-38877

IBM Jazz for Service Management 1.1.3.10 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript …

Patch available
Fix from $1,600 2021-09-23
Jazz For Service Management MEDIUM 5.4
CVE-2021-29810

IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows u…

Patch available
Fix from $1,600 2021-09-23
Jazz For Service Management MEDIUM 5.4
CVE-2021-29812

IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows u…

Patch available
Fix from $1,600 2021-09-23
Jazz For Service Management MEDIUM 5.4
CVE-2021-29800

IBM Tivoli Netcool/OMNIbus_GUI and IBM Jazz for Service Management 1.1.3.10 is vulnerable to stored cross-site scripting. This vulnerability allows u…

Patch available
Fix from $1,600 2021-09-23
Sterling File Gateway MEDIUM 5.4
CVE-2021-20484

IBM Sterling File Gateway 2.2.0.0 through 6.1.0.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScrip…

Fix: after 6.1.0.3
Fix from $1,600 2021-09-23
Tivoli Netcool\/omnibus Webgui MEDIUM 5.4
CVE-2021-29806

IBM Jazz for Service Management and IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to stored cross-site scripting. This vulnerability allows user…

Fix: 8.1.0.24+
Fix from $1,600 2021-09-20
Tivoli Netcool\/omnibus Webgui MEDIUM 5.4
CVE-2021-29807

IBM Jazz for Service Management and IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to stored cross-site scripting. This vulnerability allows user…

Fix: 8.1.0.24+
Fix from $1,600 2021-09-20