Page 5 of 22 results (0.002 seconds)

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

IBM Security Verify Identity Manager 10.0 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 224918. IBM Security Verify Identity Manager versión 10.0, usa una configuración de bloqueo de cuentas inapropiada que podría permitir a un atacante remoto forzar las credenciales de las cuentas. IBM X-Force ID: 224918 • https://exchange.xforce.ibmcloud.com/vulnerabilities/224918 https://www.ibm.com/support/pages/node/6603405 • CWE-307: Improper Restriction of Excessive Authentication Attempts •

CVSS: 3.8EPSS: 0%CPEs: 2EXPL: 0

IBM Security Verify Identity Manager 10.0 could allow a privileged user to upload a malicious file by bypassing extension security in an HTTP request. IBM X-Force ID: 224916. IBM Security Verify Identity Manager versión 10.0, podría permitir a un usuario privilegiado cargar un archivo malicioso al omitir la seguridad de la extensión en una petición HTTP. IBM X-Force ID: 224916 • https://exchange.xforce.ibmcloud.com/vulnerabilities/224916 https://www.ibm.com/support/pages/node/6603405 • CWE-434: Unrestricted Upload of File with Dangerous Type •