NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
81788 | CVE-2016-5937 | IBM Kenexa LCMS Premier on Cloud is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. | 2 | 6.8 | Medium | 2017-02-15 | 2017-02-08 | View | |
81789 | CVE-2016-5938 | IBM Kenexa LMS on Cloud allows web pages to be stored locally which can be read by another user on the system. | 2 | 2.1 | Low | 2017-02-08 | 2017-02-05 | View | |
81790 | CVE-2016-5939 | IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. | 2 | 6.5 | Medium | 2017-06-12 | 2017-06-08 | View | |
81791 | CVE-2016-5940 | IBM Kenexa LMS on Cloud is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. | 2 | 3.5 | Low | 2017-02-08 | 2017-02-05 | View | |
81792 | CVE-2016-5941 | IBM Kenexa LMS on Cloud could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing dot dot sequences (/../) to view arbitrary files on the system. | 2 | 3.5 | Low | 2017-02-08 | 2017-02-05 | View |
Page 16185 of 17672, showing 5 records out of 88360 total, starting on record 80921, ending on 80925