CVE List

Id CVE No. Status Description Phase Votes Comments Actions
97971  CVE-2017-1151  Candidate  IBM WebSphere Application Server 8.0, 8.5, 8.5.5, and 9.0 using OpenID Connect (OIDC) configured with a Trust Association Interceptor (TAI) could allow a user to gain elevated privileges on the system. IBM Reference #: 1999293.  Assigned (20161130)  None (candidate not yet proposed)    View
97972  CVE-2017-1152  Candidate  IBM Financial Transaction Manager 3.0.1 and 3.0.2 does not properly update the SESSIONID with each request, which could allow a user to obtain the ID in further attacks against the system. IBM X-Force ID: 122293.  Assigned (20161130)  None (candidate not yet proposed)    View
97973  CVE-2017-1153  Candidate  IBM TRIRIGA Report Manager 3.2 through 3.5 contains a vulnerability that could allow an authenticated user to execute actions that they do not have access to. IBM Reference #: 1999563.  Assigned (20161130)  None (candidate not yet proposed)    View
97974  CVE-2017-1154  Candidate  IBM Algorithmics One-Algo Risk Application 4.9.1, 5.0, and 5.1.0 could allow a user to gain access to files in the local environment which should not be viewed by application users. IBM Reference #: 1999892.  Assigned (20161130)  None (candidate not yet proposed)    View
97975  CVE-2017-1155  Candidate  IBM Algorithmics One-Algo Risk Application 4.9.1, 5.0, and 5.1.0 could allow a user to gain access to another user"s reports using a specially crafted HTTP request. IBM Reference #: 1999754.  Assigned (20161130)  None (candidate not yet proposed)    View

Page 19595 of 20943, showing 5 records out of 104715 total, starting on record 97971, ending on 97975

Actions