Vulnerability index

Browse CVEs

1,094 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
MEDIUM 5.4 CVE-2023-37411 IBM Aspera Faspex 5.0.0 through 5.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in th… Aspera Faspex after 5.0.6 Fix from $1,6002024-05-28 MEDIUM 5.4 CVE-2024-28793 IBM Engineering Workflow Management 7.0.2 and 7.0.3 is vulnerable to stored cross-site scripting. Under certain configurations, this vulnerability al… Engineering Workflow Management Mitigation only Fix from $1,6002024-05-28 MEDIUM 5.4 CVE-2023-47710 IBM Security Guardium 11.4, 11.5, and 12.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code … Security Guardium Mitigation only Fix from $1,6002024-05-24 MEDIUM 5.4 CVE-2024-28761 IBM App Connect Enterprise 11.0.0.1 through 11.0.0.25 and 12.0.1.0 through 12.0.12.0 is vulnerable to HTML injection. A remote attacker could inject … App Connect Enterprise 11.0.0.26 / 12.0.12.1+ Fix from $1,6002024-05-14 MEDIUM 5.4 CVE-2024-28781 IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.20, 7.1 through 7.1.2.16, 7.2 through 7.2.3.9, 7.3 through 7.3.2.4, and 8.0 through 8.0.0.1 is vulnerabl… Devops Deploy 7.0.5.21 / 7.1.2.17+ Fix from $1,6002024-05-14 MEDIUM 6.1 CVE-2024-22344 IBM TXSeries for Multiplatforms 8.2 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be … Txseries For Multiplatform Mitigation only Fix from $1,6002024-05-14 MEDIUM 5.4 CVE-2024-28775 IBM WebSphere Automation 1.7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web U… Websphere Automation Mitigation only Fix from $1,6002024-05-01 MEDIUM 5.4 CVE-2023-47731 IBM QRadar Suite Software 1.10.12.0 through 1.10.19.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 is vulnerable to stored cross-site sc… Cloud Pak For Security after 1.10.19.0 Fix from $1,6002024-04-23 MEDIUM 6.1 CVE-2024-22359 IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.20, 7.1 through 7.1.2.16, 7.2 through 7.2.3.9, 7.3 through 7.3.2.4 and IBM DevOps Deploy 8.0 through 8.… Devops Deploy 7.0.5.21 / 7.1.2.17+ Fix from $1,6002024-04-12 MEDIUM 5.4 CVE-2023-47714 IBM Sterling File Gateway 6.0.0.0 through 6.0.3.9, 6.1.0.0 through 6.1.2.3, and 6.2.0.0 is vulnerable to cross-site scripting. This vulnerability all… Sterling File Gateway after 6.1.2.3 Fix from $1,6002024-04-12 MEDIUM 5.4 CVE-2023-45186 IBM Sterling B2B Integrator 6.0.0.0 through 6.0.3.9, 6.1.0.0 through 6.1.2.3, and 6.2.0.0 is vulnerable to cross-site scripting. This vulnerability a… Sterling B2b Integrator after 6.1.2.3 Fix from $1,6002024-04-12 MEDIUM 5.4 CVE-2023-50307 IBM Sterling B2B Integrator 6.0.0.0 through 6.0.3.9, 6.1.0.0 through 6.1.2.3, and 6.2.0.0 is vulnerable to cross-site scripting. This vulnerability a… Sterling B2b Integrator after 6.1.2.3 Fix from $1,6002024-04-12 MEDIUM 5.4 CVE-2024-22357 IBM Sterling B2B Integrator 6.0.0.0 through 6.0.3.9, 6.1.0.0 through 6.1.2.3, and 6.2.0.0 is vulnerable to cross-site scripting. This vulnerability a… Sterling B2b Integrator after 6.1.2.3 Fix from $1,6002024-04-12 MEDIUM 6.1 CVE-2024-27270 IBM WebSphere Application Server Liberty 23.0.0.3 through 24.0.0.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed ar… Websphere Application Server 24.0.0.4+ Fix from $1,6002024-03-27 MEDIUM 5.4 CVE-2024-28784 IBM QRadar SIEM 7.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alte… Qradar Security Information And Event Manager Mitigation only Fix from $1,6002024-03-27 MEDIUM 5.4 CVE-2023-50961 IBM QRadar SIEM 7.5 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI th… Qradar Security Information And Event Manager Mitigation only Fix from $1,6002024-03-27 MEDIUM 6.1 CVE-2023-47699 IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code i… Sterling Secure Proxy Mitigation only Fix from $1,6002024-03-15 MEDIUM 6.1 CVE-2023-47162 IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code i… Sterling Secure Proxy Patch available Fix from $1,6002024-03-15 MEDIUM 5.4 CVE-2023-46182 IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code i… Sterling Secure Proxy Mitigation only Fix from $1,6002024-03-15 MEDIUM 6.4 CVE-2023-38723 IBM Maximo Application Suite 7.6.1.3 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code… Maximo Application Suite Mitigation only Fix from $1,6002024-03-13 MEDIUM 5.4 CVE-2023-28517 IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbit… Sterling Partner Engagement Manager Mitigation only Fix from $1,6002024-03-13 MEDIUM 6.1 CVE-2023-38360 IBM CICS TX Advanced 10.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thu… Cics Tx Mitigation only Fix from $1,6002024-03-04 MEDIUM 5.4 CVE-2023-43054 IBM Engineering Test Management 7.0.2 and 7.0.3 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary Java… Engineering Test Management Mitigation only Fix from $1,6002024-03-03 MEDIUM 6.1 CVE-2023-50303 IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in t… Infosphere Information Server Mitigation only Fix from $1,6002024-02-28 MEDIUM 5.4 CVE-2023-33843 IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in t… Infosphere Information Server Mitigation only Fix from $1,6002024-02-21 MEDIUM 5.4 CVE-2023-50947 IBM Business Automation Workflow 22.0.2, 23.0.1, and 23.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary… Business Automation Workflow after 21.0.3.1 Fix from $1,6002024-02-04 MEDIUM 6.1 CVE-2023-47144 IBM Tivoli Application Dependency Discovery Manager 7.3.0.0 through 7.3.0.10 is vulnerable to cross-site scripting. This vulnerability allows users t… Tivoli Application Dependency Discovery Manager 7.3.0.11+ Fix from $1,6002024-02-02 MEDIUM 5.4 CVE-2022-40744 IBM Aspera Faspex 5.0.6 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web U… Aspera Faspex 5.0.7+ Fix from $1,6002024-02-02 MEDIUM 6.1 CVE-2023-50933 IBM PowerSC 1.3, 2.0, and 2.1 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be execut… Powersc Patch available Fix from $1,6002024-02-02 MEDIUM 6.1 CVE-2021-38927 IBM Aspera Console 3.4.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus… Aspera Console 3.4.2+ Fix from $1,6002023-12-25