Page 3 of 23 results (0.003 seconds)

CVSS: 8.8EPSS: 0%CPEs: 7EXPL: 0

31 Jan 2013 — InfoSphere Import Export Manager in InfoSphere Information Server MetaBrokers & Bridges (MBB) in IBM InfoSphere Information Server 8.1, 8.5 before FP3, 8.7, and 9.1 does not validate unspecified input data, which allows remote authenticated users to execute arbitrary commands via unknown vectors. InfoSphere Import Export Manager en InfoSphere Information Server MetaBrokers & Bridges (MBB) en IBM InfoSphere Information Server v8.1, v8.5 anterior a FP3, v8.7, y v9.1 no valida datos de entrada no especificados... • http://www-01.ibm.com/support/docview.wss?uid=swg21623501 • CWE-20: Improper Input Validation •

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 0

09 Dec 2009 — Cross-site scripting (XSS) vulnerability in the Web console in IBM InfoSphere Information Server 8.1 before FP1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en la consola Web en IBM InfoSphere Information Server 8.1 en versiones anteriores a la FP1, permite a atacantes remotos inyectar secuencias de comandos web o HTML de su elección a través de vectores no especificados. • http://secunia.com/advisories/37556 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 10.0EPSS: 1%CPEs: 1EXPL: 0

09 Dec 2009 — Multiple buffer overflows in unspecified setuid executables in the DataStage subsystem in IBM InfoSphere Information Server 8.1 before FP1 have unknown impact and attack vectors. Múltiples desbordamientos de búfer en ejecutables setuid no especificados en el DataStage subsystem en IBM InfoSphere Information Server 8.1 en versiones anteriores a la FP1 tienen un impacto y vectores de ataque desconocidos. • http://secunia.com/advisories/37556 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •