Vulnerability index

Browse CVEs

1,094 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
MEDIUM 5.4 CVE-2017-1331 IBM Content Navigator 2.0.3 and 3.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in th… Content Navigator Patch available Fix from $1,6002017-08-04 MEDIUM 6.1 CVE-2017-1327 IBM iNotes 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus a… Inotes Patch available Fix from $1,6002017-08-03 MEDIUM 5.4 CVE-2017-1199 IBM InfoSphere Master Data Management Server 10.0, 11.0, 11.3, 11.4, 11.5, and 11.6 is vulnerable to cross-site scripting. This vulnerability allows … Infosphere Master Data Management Server Patch available Fix from $1,6002017-08-03 MEDIUM 6.1 CVE-2017-1500 A Reflected Cross Site Scripting (XSS) vulnerability exists in the authorization function exposed by RESTful Web Api of IBM Worklight Framework 6.1, … Mobilefirst Platform Foundation Mitigation only Fix from $1,6002017-08-01 MEDIUM 6.1 CVE-2017-1303 IBM WebSphere Portal and Web Content Manager 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed a… Websphere Portal Patch available Fix from $1,6002017-07-31 MEDIUM 6.1 CVE-2017-1332 IBM iNotes 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus a… Inotes Mitigation only Fix from $1,6002017-07-31 MEDIUM 5.4 CVE-2016-9715 IBM InfoSphere Master Data Management Server 11.0, 11.3, 11.4, 11.5, and 11.6 is vulnerable to cross-site scripting. This vulnerability allows users … Infosphere Master Data Management Server Patch available Fix from $1,6002017-07-31 MEDIUM 5.4 CVE-2016-9718 IBM InfoSphere Master Data Management Server 10.1. 11.0. 11.3, 11.4, 11.5, and 11.6 is vulnerable to cross-site scripting. This vulnerability allows … Infosphere Master Data Management Server Patch available Fix from $1,6002017-07-31 MEDIUM 5.4 CVE-2017-1496 IBM Sterling B2B Integrator Standard Edition 5.2.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScri… Sterling B2b Integrator Mitigation only Fix from $1,6002017-07-31 MEDIUM 5.4 CVE-2016-6118 IBM Emptoris Supplier Lifecycle Management 10.1.0.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScr… Emptoris Strategic Supply Management Patch available Fix from $1,6002017-07-24 MEDIUM 5.4 CVE-2016-8975 IBM Rhapsody DM 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI t… Rhapsody Design Manager Patch available Fix from $1,6002017-07-24 MEDIUM 5.4 CVE-2017-1245 IBM Rational Software Architect Design Manager 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary … Rational Software Architect Design Manager Patch available Fix from $1,6002017-07-24 MEDIUM 5.4 CVE-2017-1249 IBM Rhapsody DM 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI t… Rhapsody Design Manager Patch available Fix from $1,6002017-07-24 MEDIUM 5.4 CVE-2017-1380 IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav… Websphere Application Server after 9.0.0.4 Fix from $1,6002017-07-24 MEDIUM 5.4 CVE-2017-1372 IBM TRIRIGA Application Platform 3.3, 3.4, and 3.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScri… Tririga Application Platform Patch available Fix from $1,6002017-07-21 MEDIUM 6.1 CVE-2017-1203 IBM Tivoli Endpoint Manager (for Lifecycle/Power/Patch) Platform and Applications is vulnerable to cross-site scripting. This vulnerability allows us… Bigfix Platform Mitigation only Fix from $1,6002017-07-19 MEDIUM 5.4 CVE-2016-6019 IBM Emptoris Strategic Supply Management Platform 10.0.0.x through 10.1.1.x is vulnerable to cross-site scripting. This vulnerability allows users to… Emptoris Strategic Supply Management Patch available Fix from $1,6002017-07-13 MEDIUM 5.4 CVE-2016-8952 IBM Emptoris Strategic Supply Management Platform 10.0.0.x through 10.1.1.x is vulnerable to cross-site scripting. This vulnerability allows users to… Emptoris Strategic Supply Management Patch available Fix from $1,6002017-07-13 MEDIUM 6.1 CVE-2017-1321 IBM InfoSphere Information Server 9.1, 11.3, and 11.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaS… Infosphere Information Server Patch available Fix from $1,6002017-07-12 MEDIUM 5.4 CVE-2016-6114 IBM Emptoris Sourcing 9.5.x through 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code … Emptoris Sourcing Mitigation only Fix from $1,6002017-07-12 MEDIUM 5.4 CVE-2016-8946 IBM Emptoris Sourcing 9.5.x through 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code … Emptoris Sourcing Mitigation only Fix from $1,6002017-07-12 MEDIUM 5.4 CVE-2016-8948 IBM Emptoris Sourcing 9.5.x through 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code … Emptoris Sourcing Patch available Fix from $1,6002017-07-12 MEDIUM 5.4 CVE-2016-8950 IBM Emptoris Sourcing 9.5.x through 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code … Emptoris Sourcing Mitigation only Fix from $1,6002017-07-12 MEDIUM 5.4 CVE-2016-9986 IBM Jazz Foundation Reporting Service (JRS) 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav… Jazz Reporting Service Mitigation only Fix from $1,6002017-07-05 MEDIUM 5.4 CVE-2016-9987 IBM Jazz Foundation Reporting Service (JRS) 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav… Jazz Reporting Service Mitigation only Fix from $1,6002017-07-05 MEDIUM 5.4 CVE-2016-9988 IBM Jazz Foundation Reporting Service (JRS) 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav… Jazz Reporting Service Mitigation only Fix from $1,6002017-07-05 MEDIUM 5.4 CVE-2016-9989 IBM Jazz Foundation Reporting Service (JRS) 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav… Jazz Reporting Service Mitigation only Fix from $1,6002017-07-05 MEDIUM 5.4 CVE-2017-1096 IBM Jazz Reporting Service (JRS) 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript cod… Jazz Reporting Service Mitigation only Fix from $1,6002017-07-05 MEDIUM 5.4 CVE-2016-9701 IBM Team Concert 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the We… Rational Team Concert Mitigation only Fix from $1,6002017-07-05 MEDIUM 5.4 CVE-2016-9733 IBM Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in … Rational Team Concert Mitigation only Fix from $1,6002017-07-05