NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
21026 | CVE-2016-6038 | Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote authenticated users to read arbitrary files via a crafted URL. | 2 | 4 | Medium | 2017-01-19 | 2016-11-28 | View | |
81815 | CVE-2016-6039 | IBM Jazz Reporting Service (JRS) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. | 2 | 3.5 | Low | 2017-02-08 | 2017-02-07 | View | |
81816 | CVE-2016-6040 | IBM Jazz Foundation could allow an authenticated user to take over a previously logged in user due to session expiration not being enforced. | 2 | 6 | Medium | 2017-02-15 | 2017-02-08 | View | |
81817 | CVE-2016-6042 | IBM AppScan Enterprise Edition could allow a remote attacker to execute arbitrary code on the system, caused by improper handling of objects in memory. By persuading a victim to open specially-crafted content, an attacker could exploit this vulnerability to execute arbitrary code on the system in the same context as the victim. | 2 | 9.3 | High | 2017-02-15 | 2017-02-09 | View | |
81818 | CVE-2016-6043 | Tivoli Storage Manager Operations Center could allow a local user to take over a previously logged in user due to session expiration not being enforced. | 2 | 4.4 | Medium | 2017-02-15 | 2017-02-09 | View |
Page 16198 of 17672, showing 5 records out of 88360 total, starting on record 80986, ending on 80990