Vulnerability index

Browse CVEs

6,336 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Rational Quality Manager MEDIUM 5.4
CVE-2017-1792

IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed…

Fix: after 6.0.5
Fix from $1,600 2018-07-10
Rational Quality Manager MEDIUM 5.4
CVE-2017-1793

IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed…

Fix: after 6.0.5
Fix from $1,600 2018-07-10
Rational Quality Manager MEDIUM 5.4
CVE-2018-1396

IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed…

Fix: after 6.0.5
Fix from $1,600 2018-07-10
Rational Quality Manager MEDIUM 5.4
CVE-2018-1523

IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed…

Fix: after 6.0.5
Fix from $1,600 2018-07-10
Rational Quality Manager MEDIUM 5.4
CVE-2018-1549

IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to HTTP response splitting attacks. A remote attacker could explo…

Fix: after 6.0.5
Fix from $1,600 2018-07-10
Rational Team Concert MEDIUM 5.4
CVE-2018-1408

IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed ar…

Fix: after 6.0.5
Fix from $1,600 2018-07-10
Rational Team Concert MEDIUM 5.4
CVE-2018-1521

IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed ar…

Fix: after 6.0.5
Fix from $1,600 2018-07-10
Rational Team Concert MEDIUM 5.4
CVE-2018-1407

IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed ar…

Fix: after 6.0.5
Fix from $1,600 2018-07-10
Infosphere Data Replication Dashboard CRITICAL 9.8
CVE-2013-3000

SQL injection vulnerability in IBM InfoSphere Data Replication Dashboard 9.7 and 10.1 allows remote attackers to execute arbitrary SQL commands via u…

Mitigation only
Fix from $2,300 2018-07-09
Infosphere Data Replication Dashboard HIGH 7.5
CVE-2013-3001

Directory traversal vulnerability in IBM InfoSphere Data Replication Dashboard 9.7 and 10.1 allows remote attackers to read arbitrary files via unspe…

Mitigation only
Fix from $1,950 2018-07-09
Tivoli Application Dependency Discovery Manager HIGH 7.5
CVE-2013-3017

IBM Tivoli Application Dependency Discovery Manager (TADDM) before 7.2.1.5 and 7.2.x before 7.2.2 make it easier for remote attackers to defeat crypt…

Fix: 7.2.1.5+
Fix from $1,950 2018-07-09
Infosphere Data Replication Dashboard MEDIUM 6.1
CVE-2013-2999

Cross-site scripting (XSS) vulnerability in IBM InfoSphere Data Replication Dashboard 9.7 and 10.1 allows remote attackers to inject arbitrary web sc…

Mitigation only
Fix from $1,600 2018-07-09
Filenet Content Manager HIGH 7.1
CVE-2018-1542

IBM FileNet Content Manager, IBM Content Foundation, and IBM Case Foundation Administration Console for Content Platform Engine (ACCE) 5.2.1 and 5.5.…

Patch available
Fix from $1,950 2018-07-06
Websphere Application Server MEDIUM 6.7
CVE-2018-1621

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a local attacker to obtain clear text password in a trace file caused by improper…

Patch available
Fix from $1,600 2018-07-06
Planning Analytics Local MEDIUM 6.1
CVE-2018-1676

IBM Planning Analytics 2.0.0 through 2.0.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code …

Fix: after 2.0.4
Fix from $1,600 2018-07-06
Api Connect MEDIUM 5.9
CVE-2018-1546

IBM API Connect 5.0.0.0 through 5.0.8.3 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP …

Fix: after 5.0.8.3
Fix from $1,600 2018-07-06
Rational Doors Next Generation MEDIUM 5.4
CVE-2018-1494

IBM DOORS Next Generation (DNG/RRC) 5.0 through 5.0.2 and 6.0 through 6.0.5 is vulnerable to cross-site scripting. This vulnerability allows users to…

Mitigation only
Fix from $1,600 2018-07-06
Filenet Content Manager MEDIUM 5.4
CVE-2018-1555

IBM FileNet Content Manager 5.2.1 and 5.5.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code…

Mitigation only
Fix from $1,600 2018-07-06
Filenet Content Manager MEDIUM 5.4
CVE-2018-1556

IBM FileNet Content Manager 5.2.1 and 5.5.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code…

Mitigation only
Fix from $1,600 2018-07-06
Rational Quality Manager MEDIUM 6.1
CVE-2017-1248

IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which whe…

Fix: after 6.0.5
Fix from $1,600 2018-07-06
Rational Collaborative Lifecycle Management MEDIUM 5.4
CVE-2017-1237

IBM Jazz based applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI …

Fix: after 6.0.5
Fix from $1,600 2018-07-06
Rational Quality Manager MEDIUM 5.4
CVE-2017-1238

IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Java…

Fix: after 6.0.5
Fix from $1,600 2018-07-06
Rational Quality Manager MEDIUM 5.4
CVE-2017-1242

IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which whe…

Fix: after 6.0.5
Fix from $1,600 2018-07-06
Rational Quality Manager MEDIUM 5.4
CVE-2017-1329

IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which whe…

Fix: after 6.0.5
Fix from $1,600 2018-07-06
Rational Quality Manager MEDIUM 5.3
CVE-2017-1239

IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 could reveal sensitive information in HTTP 500 Internal Server Error responses. IBM X-Force ID:…

Fix: after 6.0.5
Fix from $1,600 2018-07-06
Rational Collaborative Lifecycle Management MEDIUM 5.3
CVE-2017-1488

An undisclosed vulnerability in Jazz common products exists with potential for information disclosure. IBM X-Force ID: 128627.

Fix: after 6.0.5
Fix from $1,600 2018-07-06
Rational Collaborative Lifecycle Management MEDIUM 5.4
CVE-2017-1317

IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site…

Mitigation only
Fix from $1,600 2018-07-03
Rational Collaborative Lifecycle Management MEDIUM 5.4
CVE-2017-1561

IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site…

Mitigation only
Fix from $1,600 2018-07-03
Rational Collaborative Lifecycle Management MEDIUM 5.4
CVE-2017-1562

IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site…

Mitigation only
Fix from $1,600 2018-07-03
Rational Collaborative Lifecycle Management MEDIUM 5.4
CVE-2017-1564

IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site…

Mitigation only
Fix from $1,600 2018-07-03