Page 7 of 704 results (0.004 seconds)

CVSS: 5.4EPSS: 0%CPEs: 5EXPL: 0

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 266064. IBM InfoSphere Information Server 11.7 es vulnerable a cross-site scripting. Esta vulnerabilidad permite a los usuarios incrustar código JavaScript arbitrario en la interfaz de usuario web, alterando así la funcionalidad prevista, lo que podría conducir a la divulgación de credenciales dentro de una sesión confiable. • https://exchange.xforce.ibmcloud.com/vulnerabilities/266064 https://www.ibm.com/support/pages/node/7067704 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 8.8EPSS: 0%CPEs: 5EXPL: 0

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 260585. IBM InfoSphere Information Server 11.7 es vulnerable a cross-site request forgery, lo que podría permitir a un atacante ejecutar acciones maliciosas y no autorizadas transmitidas por un usuario en el que confía el sitio web. ID de IBM X-Force: 260585. • https://exchange.xforce.ibmcloud.com/vulnerabilities/260585 https://www.ibm.com/support/pages/node/7067682 • CWE-352: Cross-Site Request Forgery (CSRF) •

CVSS: 8.4EPSS: 0%CPEs: 3EXPL: 0

IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the invscout command to execute arbitrary commands. IBM X-Force ID: 267966. IBM AIX 7.2, 7.3 y VIOS 3.1 podrían permitir que un usuario local sin privilegios aproveche una vulnerabilidad en el comando invscout para ejecutar comandos arbitrarios. ID de IBM X-Force: 267966. • https://exchange.xforce.ibmcloud.com/vulnerabilities/267966 https://www.ibm.com/support/pages/node/7086090 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 8.1EPSS: 0%CPEs: 4EXPL: 0

IBM InfoSphere Information Server 11.7 could allow an authenticated user to change installation files due to incorrect file permission settings. IBM X-Force ID: 263332. IBM InfoSphere Information Server 11.7 podría permitir a un usuario autenticado cambiar los archivos de instalación debido a una configuración incorrecta de permisos de archivos. ID de IBM X-Force: 263332. • https://exchange.xforce.ibmcloud.com/vulnerabilities/263332 https://www.ibm.com/support/pages/node/7070742 • CWE-276: Incorrect Default Permissions •

CVSS: 6.2EPSS: 0%CPEs: 2EXPL: 0

IBM AIX's 7.3 Python implementation could allow a non-privileged local user to exploit a vulnerability to cause a denial of service. IBM X-Force ID: 267965. La implementación Python 7.3 de IBM AIX podría permitir que un usuario local sin privilegios aproveche una vulnerabilidad para provocar una denegación de servicio. ID de IBM X-Force: 267965. • https://aix.software.ibm.com/aix/efixes/security/python_advisory6.asc https://exchange.xforce.ibmcloud.com/vulnerabilities/267965 https://www.ibm.com/support/pages/node/7068084 • CWE-20: Improper Input Validation CWE-400: Uncontrolled Resource Consumption •