NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 28012 | CVE-2015-7409 | Cross-site scripting (XSS) vulnerability in IBM Security QRadar SIEM 7.2.x before 7.2.6 allows remote authenticated users to inject arbitrary web script or HTML via an unspecified field. | 2 | 3.5 | Low | 2017-01-19 | 2016-01-06 | View | |
| 28013 | CVE-2015-7410 | The Health Check tool in IBM Sterling B2B Integrator 5.2 does not properly use cookies in conjunction with HTTPS sessions, which allows man-in-the-middle attackers to obtain sensitive information or modify data via unspecified vectors. | 2 | 5.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 28014 | CVE-2015-7411 | The portal client in IBM Tivoli Monitoring (ITM) 6.2.2 through FP9, 6.2.3 through FP5, and 6.3.0 through FP6 allows remote authenticated users to gain privileges via unspecified vectors. | 2 | 9 | High | 2017-01-19 | 2016-12-02 | View | |
| 28015 | CVE-2015-7412 | The GatewayScript modules on IBM DataPower Gateways with software 7.2.0.x before 7.2.0.1, when the GatewayScript decryption API or a JWE decrypt action is enabled, do not require signed ciphertext data, which makes it easier for remote attackers to obtain plaintext data via a padding-oracle attack. | 2 | 2.6 | Low | 2017-01-19 | 2015-11-09 | View | |
| 28016 | CVE-2015-7413 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.0.0 before 8.0.0.1 CF19 and 8.5.0 through CF08 allows remote attackers to inject arbitrary web script or HTML via a crafted URL. | 2 | 4.3 | Medium | 2017-01-19 | 2015-12-21 | View |
Page 14927 of 17672, showing 5 records out of 88360 total, starting on record 74631, ending on 74635