Vulnerability index

Browse CVEs

1,094 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
Rational Collaborative Lifecycle Management MEDIUM 5.4
CVE-2018-1762

IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability al…

Fix: after 6.0.6
Fix from $1,600 2018-11-29
Maximo Asset Management MEDIUM 5.4
CVE-2018-1584

IBM Maximo Asset Management 7.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web …

Patch available
Fix from $1,600 2018-11-28
Websphere Application Server MEDIUM 6.1
CVE-2018-1643

The Installation Verification Tool of IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerabili…

Fix: after 9.0.0.8
Fix from $1,600 2018-11-15
Websphere Application Server MEDIUM 6.1
CVE-2018-1798

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav…

Fix: after 9.0.0.9
Fix from $1,600 2018-11-12
Maximo Asset Management MEDIUM 5.4
CVE-2018-1872

IBM Maximo Asset Management 7.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web …

Patch available
Fix from $1,600 2018-11-09
Rational Quality Manager MEDIUM 5.4
CVE-2017-1609

IBM Quality Manager (RQM) 5.0 through 5.0.2 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed ar…

Fix: after 6.0.6
Fix from $1,600 2018-11-02
Websphere Application Server MEDIUM 6.1
CVE-2018-1767

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Cachemonitor is vulnerable to cross-site scripting. This vulnerability allows users to embed …

Fix: after 9.0.0.9
Fix from $1,600 2018-10-29
Rational Team Concert MEDIUM 5.4
CVE-2018-1766

IBM Team Concert (RTC) 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbit…

Fix: after 6.0.5
Fix from $1,600 2018-10-29
Websphere Commerce MEDIUM 5.4
CVE-2018-1541

IBM WebSphere Commerce Enterprise V7, V8, and V9 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript…

Fix: after 9.0.0.6
Fix from $1,600 2018-10-24
Websphere Application Server MEDIUM 5.4
CVE-2018-1777

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav…

Fix: after 9.0.0.9
Fix from $1,600 2018-10-16
Engineering Lifecycle Optimization Publishing MEDIUM 5.4
CVE-2018-1533

IBM Rational Publishing Engine 6.0.5 and 6.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript c…

Patch available
Fix from $1,600 2018-10-12
Engineering Lifecycle Optimization Publishing MEDIUM 5.4
CVE-2018-1534

IBM Rational Publishing Engine 6.0.5 and 6.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript c…

Patch available
Fix from $1,600 2018-10-12
Websphere Portal MEDIUM 6.1
CVE-2018-1673

IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code…

Patch available
Fix from $1,600 2018-10-12
Spectrum Symphony MEDIUM 5.4
CVE-2018-1706

IBM Spectrum Symphony 7.2.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI…

Patch available
Fix from $1,600 2018-10-11
Robotic Process Automation With Automation Anywhere MEDIUM 6.1
CVE-2018-1795

IBM Robotic Process Automation with Automation Anywhere Enterprise 10 is vulnerable to cross-site scripting. This vulnerability allows users to embed…

Patch available
Fix from $1,600 2018-10-05
Maximo Asset Management MEDIUM 5.4
CVE-2018-1686

IBM Maximo Asset Management 7.6 through 7.6.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript co…

Fix: after 7.6.3
Fix from $1,600 2018-10-05
Robotic Process Automation With Automation Anywhere MEDIUM 5.4
CVE-2018-1812

IBM Robotic Process Automation with Automation Anywhere Enterprise 10 is vulnerable to persistent cross-site scripting, caused by missing escaping of…

Patch available
Fix from $1,600 2018-10-05
Rational Quality Manager MEDIUM 5.4
CVE-2018-1604

IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to …

Fix: after 6.0.6
Fix from $1,600 2018-10-04
Rational Quality Manager MEDIUM 5.4
CVE-2018-1602

IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to …

Fix: after 6.0.6
Fix from $1,600 2018-10-04
Rational Quality Manager MEDIUM 5.4
CVE-2018-1603

IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to …

Fix: after 6.0.6
Fix from $1,600 2018-10-04
Websphere Application Server MEDIUM 6.1
CVE-2018-1793

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 using SAML ear is vulnerable to cross-site scripting. This vulnerability allows users to embe…

Patch available
Fix from $1,600 2018-10-03
Websphere Application Server MEDIUM 6.1
CVE-2018-1794

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 using OAuth ear is vulnerable to cross-site scripting. This vulnerability allows users to emb…

Fix: after 9.0.0.9
Fix from $1,600 2018-10-03
Rational Quality Manager MEDIUM 5.4
CVE-2018-1692

IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to …

Fix: after 6.0.6
Fix from $1,600 2018-10-02
Rational Quality Manager MEDIUM 5.4
CVE-2018-1557

IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to …

Fix: after 6.0.6
Fix from $1,600 2018-10-02
Rational Collaborative Lifecycle Management MEDIUM 5.4
CVE-2018-1558

IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability all…

Fix: after 6.0.6
Fix from $1,600 2018-10-02
Rational Quality Manager MEDIUM 5.4
CVE-2018-1601

IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to …

Fix: after 6.0.6
Fix from $1,600 2018-10-02
Rational Quality Manager MEDIUM 5.4
CVE-2018-1605

IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to …

Fix: after 6.0.6
Fix from $1,600 2018-10-02
Rational Quality Manager MEDIUM 5.4
CVE-2018-1691

IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to …

Fix: after 6.0.6
Fix from $1,600 2018-10-02
Rational Quality Manager MEDIUM 5.4
CVE-2018-1405

IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to …

Fix: after 6.0.6
Fix from $1,600 2018-10-02
Rational Quality Manager MEDIUM 5.4
CVE-2018-1439

IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to …

Fix: after 6.0.6
Fix from $1,600 2018-10-02