Page 22 of 828 results (0.010 seconds)

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Admin Console could allow a remote attacker to obtain sensitive information when a specially crafted url causes a stack trace to be dumped. IBM X-Force ID: 160202. IBM WebSphere Application Server Admin Console versiones 7.0, 8.0, 8.5, y 9.0 podría permitirle a un atacante remoto obtener información sensible cuando una URL manipulada provoca una traza de pila para ser volcada. ID de IBM X-Force: 160202. • http://www.securityfocus.com/bid/109000 https://exchange.xforce.ibmcloud.com/vulnerabilities/160202 https://www-01.ibm.com/support/docview.wss?uid=ibm10884032 • CWE-209: Generation of Error Message Containing Sensitive Information •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

IBM WebSphere MQ 8.0.0.0 through 8.0.0.9 and 9.0.0.0 through 9.1.1 could allow a local non privileged user to execute code as an administrator due to incorrect permissions set on MQ installation directories. IBM X-Force ID: 157190. IBM WebSphere MQ versión 8.0.0.0 hasta 8.0.0.9 y versión 9.0.0.0 hasta 9.1.1, podría permitir a un usuario local sin privilegios ejecutar código como administrador debido a definición incorrecta de permisos en los directorios de instalación MQ. ID de IBM X-Force: 157190. • https://exchange.xforce.ibmcloud.com/vulnerabilities/157190 https://www.ibm.com/support/docview.wss?uid=ibm10872876 • CWE-732: Incorrect Permission Assignment for Critical Resource •

CVSS: 6.2EPSS: 0%CPEs: 4EXPL: 0

IBM WebSphere MQ 8.0.0.0 through 8.0.0.9 and 9.0.0.0 through 9.1.1 could allow a local attacker to cause a denial of service within the error log reporting system. IBM X-Force ID: 156163. IBM WebSphere MQ versión 8.0.0.0 hasta 8.0.0.9 y versión 9.0.0.0 hasta 9.1.1, podría permitir que un atacante local genere una Denegación de Servicio dentro del sistema de reportes de registro de errores. ID de IBM X-Force: 156163. • https://exchange.xforce.ibmcloud.com/vulnerabilities/156163 https://www.ibm.com/support/docview.wss?uid=ibm10870492 •

CVSS: 10.0EPSS: 20%CPEs: 3EXPL: 1

IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to execute arbitrary code on the system with a specially-crafted sequence of serialized objects from untrusted sources. IBM X-Force ID: 160445. IBM WebSphere Application Server 8.5 y 9.0 podría permitir a un atacante remoto ejecutar código arbitrario en el sistema con una secuencia especialmente diseñada de objetos serializados de fuentes no confiables. ID de IBM X-Force: 160445. • https://www.exploit-db.com/exploits/46969 http://www.securityfocus.com/bid/108450 https://exchange.xforce.ibmcloud.com/vulnerabilities/160445 https://www.ibm.com/support/docview.wss?uid=ibm10883628 https://www-01.ibm.com/support/docview.wss?uid=ibm10883628 • CWE-502: Deserialization of Untrusted Data •

CVSS: 5.9EPSS: 0%CPEs: 2EXPL: 0

IBM WebShere MQ 9.1.0.0, 9.1.0.1, 9.1.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 152925. Las versiones 9.1.0.0, 9.1.0.1 y 9.1.1 de IBM WebShere MQ utilizan algoritmos criptográficos más débiles de lo esperado, que podrían permitir a un atacante desencriptar información altamente sensible. IBM X-Force ID: 152925. • https://exchange.xforce.ibmcloud.com/vulnerabilities/152925 https://www.ibm.com/support/docview.wss?uid=ibm10744713 • CWE-326: Inadequate Encryption Strength •