NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87870 | CVE-2017-1176 | IBM Maximo Asset Management 7.1, 7.5, and 7.6 could allow a local user to obtain sensitive information due to inappropriate data retention of attachments. IBM X-Force ID: 123299. | 2017-07-18 | 2017-07-06 | View | ||||
87869 | CVE-2017-1175 | IBM Maximo Asset Management 7.1, 7.5, and 7.6 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 123297. | 2017-07-18 | 2017-07-06 | View | ||||
84226 | CVE-2017-1171 | The IBM TRIRIGA Application Platform 3.3, 3,4, and 3,5 contain a vulnerability that could allow an authenticated user to execute Application actions they do not have access to. IBM Reference #: 2001083. | 2 | 4 | Medium | 2017-04-27 | 2017-04-04 | View | |
84225 | CVE-2017-1170 | IBM WebSphere Commerce Enterprise, Professional, Express, and Developer 8.0 could allow a local user to hijack a user's session. IBM X-Force ID: 123230. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
84224 | CVE-2017-1161 | IBM API Connect 5.0.6.0 could allow a remote attacker to execute arbitrary commands on the system, caused by improper validation of URLs for the Developer Portal. By crafting a malicious URL, an attacker could exploit this vulnerability to execute arbitrary commands on the system with the privileges of the www-data user. IBM X-Force ID: 122956. | 2 | 7.5 | High | 2017-04-27 | 2017-04-25 | View |
Page 777 of 17672, showing 5 records out of 88360 total, starting on record 3881, ending on 3885