CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
95731 | CVE-2016-8911 | Candidate | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim"s click actions and possibly launch further attacks against the victim. | Assigned (20161025) | None (candidate not yet proposed) | View | |
95732 | CVE-2016-8912 | Candidate | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 stores potentially sensitive information in in log files that could be read by an authenticated user. | Assigned (20161025) | None (candidate not yet proposed) | View | |
95733 | CVE-2016-8913 | Candidate | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. | Assigned (20161025) | None (candidate not yet proposed) | View | |
95734 | CVE-2016-8914 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161025) | None (candidate not yet proposed) | View | |
95735 | CVE-2016-8915 | Candidate | IBM WebSphere MQ 8.0 could allow an authenticated user with access to the queue manager and queue, to deny service to other channels running under the same process. IBM Reference #: 1998649. | Assigned (20161025) | None (candidate not yet proposed) | View |
Page 19147 of 20943, showing 5 records out of 104715 total, starting on record 95731, ending on 95735