NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
81788  CVE-2016-5937  IBM Kenexa LCMS Premier on Cloud is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.    6.8  Medium  2017-02-15  2017-02-08  View
81789  CVE-2016-5938  IBM Kenexa LMS on Cloud allows web pages to be stored locally which can be read by another user on the system.    2.1  Low  2017-02-08  2017-02-05  View
81790  CVE-2016-5939  IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.    6.5  Medium  2017-06-12  2017-06-08  View
81791  CVE-2016-5940  IBM Kenexa LMS on Cloud is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.    3.5  Low  2017-02-08  2017-02-05  View
81792  CVE-2016-5941  IBM Kenexa LMS on Cloud could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing dot dot sequences (/../) to view arbitrary files on the system.    3.5  Low  2017-02-08  2017-02-05  View

Page 16185 of 17672, showing 5 records out of 88360 total, starting on record 80921, ending on 80925

Actions