NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
18851 | CVE-2016-2869 | Multiple cross-site scripting (XSS) vulnerabilities in the UI in IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 allow remote authenticated users to inject arbitrary web script or HTML via crafted fields in a URL. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-14 | View | |
18852 | CVE-2016-2870 | Buffer overflow in the CLI on IBM WebSphere DataPower XC10 appliances 2.1 and 2.5 allows remote authenticated users to cause a denial of service via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
18853 | CVE-2016-2871 | IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 uses cleartext storage for unspecified passwords, which allows local users to obtain sensitive information by reading a configuration file. | 2 | 4.6 | Medium | 2017-01-19 | 2016-12-14 | View | |
18854 | CVE-2016-2872 | Directory traversal vulnerability in IBM Security QRadar SIEM 7.2.x before 7.2.7 and QRadar Incident Forensics 7.2.x before 7.2.7 allows remote attackers to read arbitrary files via a crafted URL. | 2 | 5 | Medium | 2017-01-19 | 2016-07-05 | View | |
18855 | CVE-2016-2873 | SQL injection vulnerability in IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. | 2 | 6.5 | Medium | 2017-01-19 | 2016-12-22 | View |
Page 15684 of 17672, showing 5 records out of 88360 total, starting on record 78416, ending on 78420