CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
97971 | CVE-2017-1151 | Candidate | IBM WebSphere Application Server 8.0, 8.5, 8.5.5, and 9.0 using OpenID Connect (OIDC) configured with a Trust Association Interceptor (TAI) could allow a user to gain elevated privileges on the system. IBM Reference #: 1999293. | Assigned (20161130) | None (candidate not yet proposed) | View | |
97972 | CVE-2017-1152 | Candidate | IBM Financial Transaction Manager 3.0.1 and 3.0.2 does not properly update the SESSIONID with each request, which could allow a user to obtain the ID in further attacks against the system. IBM X-Force ID: 122293. | Assigned (20161130) | None (candidate not yet proposed) | View | |
97973 | CVE-2017-1153 | Candidate | IBM TRIRIGA Report Manager 3.2 through 3.5 contains a vulnerability that could allow an authenticated user to execute actions that they do not have access to. IBM Reference #: 1999563. | Assigned (20161130) | None (candidate not yet proposed) | View | |
97974 | CVE-2017-1154 | Candidate | IBM Algorithmics One-Algo Risk Application 4.9.1, 5.0, and 5.1.0 could allow a user to gain access to files in the local environment which should not be viewed by application users. IBM Reference #: 1999892. | Assigned (20161130) | None (candidate not yet proposed) | View | |
97975 | CVE-2017-1155 | Candidate | IBM Algorithmics One-Algo Risk Application 4.9.1, 5.0, and 5.1.0 could allow a user to gain access to another user"s reports using a specially crafted HTTP request. IBM Reference #: 1999754. | Assigned (20161130) | None (candidate not yet proposed) | View |
Page 19595 of 20943, showing 5 records out of 104715 total, starting on record 97971, ending on 97975