NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
81846 | CVE-2016-6116 | IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. | 2 | 4.3 | Medium | 2017-02-08 | 2017-02-07 | View | |
81847 | CVE-2016-6117 | IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 can be deployed with active debugging code that can disclose sensitive information. | 2 | 5 | Medium | 2017-02-15 | 2017-02-10 | View | |
81848 | CVE-2016-6122 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 discloses answers to security questions in a response to authenticated users. | 2 | 4 | Medium | 2017-02-15 | 2017-02-08 | View | |
81849 | CVE-2016-6123 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. | 2 | 3.5 | Low | 2017-02-08 | 2017-02-05 | View | |
81850 | CVE-2016-6124 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server. | 2 | 6.5 | Medium | 2017-02-08 | 2017-02-07 | View |
Page 16370 of 17672, showing 5 records out of 88360 total, starting on record 81846, ending on 81850