Vulnerability index

Browse CVEs

1,094 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
MEDIUM 5.4 CVE-2016-5897 IBM Jazz Reporting Service (JRS) is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be exe… Jazz Reporting Service Patch available Fix from $1,6002017-02-01 MEDIUM 5.4 CVE-2016-5899 IBM Jazz Reporting Service (JRS) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web… Jazz Reporting Service Patch available Fix from $1,6002017-02-01 MEDIUM 5.4 CVE-2016-5948 IBM Kenexa LCMS Premier on Cloud is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web… Kenexa Lcms Premier Patch available Fix from $1,6002017-02-01 MEDIUM 5.4 CVE-2016-5951 IBM Kenexa LCMS Premier on Cloud is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web… Kenexa Lcms Premier Patch available Fix from $1,6002017-02-01 MEDIUM 5.4 CVE-2016-5980 IBM TRIRIGA Application Platform is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web… Tririga Application Platform Patch available Fix from $1,6002017-02-01 MEDIUM 5.4 CVE-2016-6030 IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alte… Rational Collaborative Lifecycle Management Patch available Fix from $1,6002017-02-01 MEDIUM 5.4 CVE-2016-6039 IBM Jazz Reporting Service (JRS) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web… Jazz Reporting Service Patch available Fix from $1,6002017-02-01 MEDIUM 5.4 CVE-2016-6046 IBM Tivoli Storage Manager Operations Center is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript cod… Tivoli Storage Manager Patch available Fix from $1,6002017-02-01 MEDIUM 6.1 CVE-2016-2938 IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the … Domino Patch available Fix from $1,6002017-02-01 MEDIUM 6.1 CVE-2016-2939 IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the … Domino Patch available Fix from $1,6002017-02-01 MEDIUM 6.1 CVE-2016-3018 IBM Security Access Manager for Web is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the … Security Access Manager Mitigation only Fix from $1,6002017-02-01 MEDIUM 6.1 CVE-2016-5882 IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the … Domino Patch available Fix from $1,6002017-02-01 MEDIUM 6.1 CVE-2016-5884 IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the … Domino Patch available Fix from $1,6002017-02-01 MEDIUM 5.4 CVE-2016-0265 IBM Campaign is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulner… Campaign Patch available Fix from $1,6002017-02-01 MEDIUM 5.4 CVE-2016-5880 IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the … Domino Patch available Fix from $1,6002017-02-01 MEDIUM 5.4 CVE-2016-2994 Cross-site scripting (XSS) vulnerability in IBM UrbanCode Deploy 6.2.x before 6.2.1.2 allows remote authenticated users to inject arbitrary web scrip… Urbancode Deploy Mitigation only Fix from $1,6002016-12-01 MEDIUM 5.4 CVE-2016-2991 Multiple cross-site scripting (XSS) vulnerabilities in IBM Lotus Protector for Mail Security 2.8.0.0 through 2.8.1.0 before 2.8.1.0-22115 allow remot… Lotus Protector For Mail Security Mitigation only Fix from $1,6002016-12-01 MEDIUM 5.4 CVE-2016-2955 Cross-site scripting (XSS) vulnerability in IBM Connections 5.0 before CR4 and 5.5 before CR1 allows remote authenticated users to inject arbitrary w… Connections Patch available Fix from $1,6002016-12-01 MEDIUM 5.4 CVE-2016-2869 Multiple cross-site scripting (XSS) vulnerabilities in the UI in IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 allow remote authentica… Qradar Security Information And Event Manager after 7.1.0 Fix from $1,6002016-11-30 MEDIUM 5.4 CVE-2016-5905 Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.5 before 7.5.0.10 IF3 and 7.6 before 7.6.0.5 IF2 allows remote authenticate… Maximo Asset Management Patch available Fix from $1,6002016-11-30 MEDIUM 6.1 CVE-2016-3057 Cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator 5.2 before 5020500_14 and 5.2 06 before 5020602_1 allows remote attackers to … Sterling B2b Integrator Patch available Fix from $1,6002016-11-30 MEDIUM 5.4 CVE-2016-3014 Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 4.0 before 4.0.7 iFix11 and 5.0 before 5.0.2 iFix17, Rati… Rational Engineering Lifecycle Manager Mitigation only Fix from $1,6002016-11-30 MEDIUM 6.1 CVE-2016-2934 Cross-site scripting (XSS) vulnerability in IBM BigFix Remote Control before 9.1.3 allows remote attackers to inject arbitrary web script or HTML via… Bigfix Remote Control after 9.1.2 Fix from $1,6002016-11-30 MEDIUM 5.4 CVE-2016-2926 Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix19, and 6.0… Rational Team Concert Patch available Fix from $1,6002016-11-25 MEDIUM 5.4 CVE-2016-0316 Cross-site scripting (XSS) vulnerability in Lifecycle Query Engine (LQE) in IBM Jazz Reporting Service 6.0 and 6.0.1 before 6.0.1 iFix006 and 6.0.2 b… Jazz Reporting Service Patch available Fix from $1,6002016-11-25 MEDIUM 5.4 CVE-2016-5981 Cross-site scripting (XSS) vulnerability in IBM FileNet Workplace XT through 1.1.5.2-WPXT-LA011 and FileNet Workplace (Application Engine) through 4.… Filenet Workplace after 4.0.2.14-p8ae-if001 Fix from $1,6002016-11-25 MEDIUM 5.4 CVE-2016-5955 Cross-site scripting (XSS) vulnerability in IBM Rational DOORS Next Generation 6.0.2 before iFix004 allows remote authenticated users to inject arbit… Rational Doors Next Generation Mitigation only Fix from $1,6002016-11-25 MEDIUM 5.4 CVE-2016-2986 Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 6.x before 6.0.1 iFix6, Rational Quality Manager 6.x befo… Rational Engineering Lifecycle Manager Mitigation only Fix from $1,6002016-11-25 MEDIUM 5.4 CVE-2016-2864 Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 3.0.1.6 before iFix8, 4.0 before 4.0.7 iFix11, 5.0 before… Rational Quality Manager Mitigation only Fix from $1,6002016-11-24 MEDIUM 5.4 CVE-2016-0285 Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 3.0.1.6 before iFix8, 4.0 before 4.0.7 iFix11, 5.0 before… Rational Team Concert Mitigation only Fix from $1,6002016-11-24