Vulnerability index

Browse CVEs

1,094 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
MEDIUM 5.4 CVE-2016-9746 IBM Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in … Rational Team Concert Mitigation only Fix from $1,6002017-07-05 MEDIUM 5.4 CVE-2017-1113 IBM Rational Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript… Rational Team Concert Mitigation only Fix from $1,6002017-07-05 MEDIUM 5.4 CVE-2017-1208 IBM Maximo Asset Management 7.1, 7.5, and 7.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript co… Maximo Asset Management Mitigation only Fix from $1,6002017-07-05 MEDIUM 6.1 CVE-2017-1217 IBM WebSphere Portal 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web… Websphere Portal Mitigation only Fix from $1,6002017-07-05 MEDIUM 6.1 CVE-2017-1256 IBM Security Guardium 10.0, 10.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web… Security Guardium Mitigation only Fix from $1,6002017-07-05 MEDIUM 5.4 CVE-2017-1106 IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaS… Curam Social Program Management Mitigation only Fix from $1,6002017-06-28 MEDIUM 5.4 CVE-2017-1234 IBM QRadar 7.2 and 7.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus a… Qradar Security Information And Event Manager Patch available Fix from $1,6002017-06-27 MEDIUM 5.4 CVE-2017-1132 IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript… Sterling B2b Integrator Patch available Fix from $1,6002017-06-23 MEDIUM 5.4 CVE-2017-1348 IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript… Sterling B2b Integrator Patch available Fix from $1,6002017-06-23 MEDIUM 5.4 CVE-2016-9747 IBM RELM 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thu… Rational Engineering Lifecycle Manager Patch available Fix from $1,6002017-06-22 MEDIUM 5.4 CVE-2016-9973 IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alte… Rational Collaborative Lifecycle Management Mitigation only Fix from $1,6002017-06-13 MEDIUM 5.4 CVE-2017-1100 IBM Quality Manager (RQM) 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code… Rational Quality Manager Patch available Fix from $1,6002017-06-13 MEDIUM 5.4 CVE-2017-1101 IBM Quality Manager (RQM) 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code… Rational Quality Manager Patch available Fix from $1,6002017-06-13 MEDIUM 5.4 CVE-2017-1102 IBM Quality Manager (RQM) 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code… Rational Quality Manager Patch available Fix from $1,6002017-06-13 MEDIUM 5.4 CVE-2017-1104 IBM Quality Manager (RQM) 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code… Rational Quality Manager Patch available Fix from $1,6002017-06-13 MEDIUM 5.4 CVE-2017-1247 IBM DOORS Next Generation (DNG/RRC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaSc… Rational Doors Next Generation Patch available Fix from $1,6002017-06-12 MEDIUM 5.4 CVE-2017-1276 IBM DOORS Next Generation (DNG/RRC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaSc… Rational Doors Next Generation Patch available Fix from $1,6002017-06-12 MEDIUM 5.4 CVE-2017-1278 IBM DOORS Next Generation (DNG/RRC) 4.0, 5.0 and 6.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when … Rational Doors Next Generation Patch available Fix from $1,6002017-06-12 MEDIUM 5.4 CVE-2017-1140 IBM Business Process Manager 8.0 and 8.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code i… Business Process Manager Patch available Fix from $1,6002017-06-08 MEDIUM 6.1 CVE-2017-1178 IBM Endpoint Manager for Security and Compliance 1.9.70 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav… Bigfix Security Compliance Analytics Mitigation only Fix from $1,6002017-06-07 MEDIUM 5.4 CVE-2017-1305 IBM DOORS Next Generation (DNG/RRC) 6.0.2 and 6.0.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScr… Rational Doors Next Generation Patch available Fix from $1,6002017-06-07 MEDIUM 6.1 CVE-2017-1325 IBM iNotes 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus a… Inotes Patch available Fix from $1,6002017-05-26 MEDIUM 5.4 CVE-2017-1291 IBM Maximo Asset Management 7.5 and 7.6 is vulnerable to HTTP response splitting attacks. A remote attacker could exploit this vulnerability using sp… Maximo Asset Management Patch available Fix from $1,6002017-05-26 MEDIUM 5.4 CVE-2017-1282 IBM Content Navigator & CMIS 2.0 and 3.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in… Content Navigator Patch available Fix from $1,6002017-05-22 MEDIUM 5.4 CVE-2017-1320 IBM Tivoli Federated Identity Manager 6.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code i… Tivoli Federated Identity Manager Patch available Fix from $1,6002017-05-22 MEDIUM 5.4 CVE-2016-3032 IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thu… Cognos Analytics Mitigation only Fix from $1,6002017-05-10 MEDIUM 5.4 CVE-2016-5888 IBM Interact 8.6, 9.0, 9.1, and 10.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the… Interact Patch available Fix from $1,6002017-05-10 MEDIUM 5.4 CVE-2016-6035 IBM Rational Quality Manager is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI … Rational Team Concert Patch available Fix from $1,6002017-05-10 MEDIUM 6.1 CVE-2016-0255 IBM Marketing Platform 9.1 and 10.0 is vulnerable to stored cross-site scripting, caused by improper validation of user-supplied input. A remote atta… Marketing Platform Patch available Fix from $1,6002017-05-05 MEDIUM 5.6 CVE-2016-8924 IBM Maximo Asset Management 7.1, 7.5 and 7.6 could allow a remote attacker to hijack a user's session, caused by the failure to invalidate an existin… Maximo Asset Management Mitigation only Fix from $1,6002017-04-26