3 results (0.003 seconds)

CVSS: 8.1EPSS: 0%CPEs: 2EXPL: 0

IBM IMS Enterprise Suite Data Provider before 3.2.0.1 for Microsoft .NET allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors. IBM IMS Enterprise Suite Data Provider en versiones anteriores a 3.2.0.1 para Microsoft .NET permite a usuarios remotos autenticados obtener información sensible o modificar datos a través de vectores no especificados. • http://www-01.ibm.com/support/docview.wss?uid=swg21982967 http://www.securityfocus.com/bid/94611 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-284: Improper Access Control •

CVSS: 9.0EPSS: 0%CPEs: 3EXPL: 0

Unspecified vulnerability in SOAP Gateway in IBM IMS Enterprise Suite 1.1, 2.1, and 2.2 allows remote authenticated users to execute arbitrary commands via unknown vectors. Vulnerabilidad no especificada en SOAP Gateway en IBM IMS Enterprise Suite v1.1, v2.1 y v2.2 permite a usuarios remotos autenticados ejecutar comandos arbitrarios mediante vectores desconocidos. • http://www-01.ibm.com/support/docview.wss?uid=swg21641655 https://exchange.xforce.ibmcloud.com/vulnerabilities/84129 •

CVSS: 5.0EPSS: 0%CPEs: 3EXPL: 0

The login component in SOAP Gateway in IBM IMS Enterprise Suite 1.1, 2.1, and 2.2 uses cleartext credentials, which allows remote attackers to obtain sensitive information by sniffing the network. El componente login en SOAP Gateway en IBM IMS Enterprise Suite v1.1, v2.1, y v2.2 usa credenciales en texto plano lo que permite a atacantes remotos obtener información sensible espiando la red. • http://www-01.ibm.com/support/docview.wss?uid=swg21631537 https://exchange.xforce.ibmcloud.com/vulnerabilities/81533 • CWE-310: Cryptographic Issues •