ibm

8,321 tracked vulnerabilities.

CVE-2016-2952 LOW
IBM BigFix Remote Control < 9.1.2 - Exposure of Sensitive Information via Missing HSTS Protection
Nov 30, 2016
CVSS 3.7
EPSS 0.02
CVE-2016-2951 LOW
IBM BigFix Remote Control < 9.1.2 - Weak Encryption Strength
Nov 30, 2016
CVSS 3.7
EPSS 0.01
CVE-2016-2950 MEDIUM
IBM BigFix Remote Control < 9.1.3 - Authenticated SQL Injection
Nov 30, 2016
CVSS 6.5
EPSS 0.01
CVE-2016-2949 LOW
IBM BigFix Remote Control < 9.1.2 - Unauthenticated Exposure of Sensitive Information via Cached Web Pages
Nov 30, 2016
CVSS 3.3
EPSS 0.00
CVE-2016-2948 HIGH
IBM BigFix Remote Control - Hard-coded Credentials Exposure
Nov 30, 2016
CVSS 7.8
EPSS 0.00
CVE-2016-2944 CRITICAL
IBM BigFix Remote Control < 9.1.2 - Unauthenticated Brute-Force Login Bypass
Nov 30, 2016
CVSS 9.8
EPSS 0.02
CVE-2016-2943 LOW
IBM BigFix Remote Control < 9.1.2 - Sensitive Information Exposure via Log File
Nov 30, 2016
CVSS 1.9
EPSS 0.00
CVE-2016-2940 MEDIUM
IBM BigFix Remote Control < 9.1.2 - Exposure of Sensitive Information
Nov 30, 2016
CVSS 5.3
EPSS 0.01
CVE-2016-2937 MEDIUM
IBM BigFix Remote Control < 9.1.2 - Information Disclosure and Email Spoofing via Crafted POST Request
Nov 30, 2016
CVSS 6.5
EPSS 0.01
CVE-2016-2936 HIGH
IBM BigFix Remote Control < 9.1.2 - Cleartext Password Storage
Nov 30, 2016
CVSS 7.3
EPSS 0.01
CVE-2016-2935 MEDIUM
IBM BigFix Remote Control < 9.1.2 - Denial of Service via Invalid HTTP Request
Nov 30, 2016
CVSS 5.3
EPSS 0.02
CVE-2016-2934 MEDIUM
IBM BigFix Remote Control < 9.1.2 - Cross-Site Scripting
Nov 30, 2016
CVSS 6.1
EPSS 0.01
CVE-2016-2933 MEDIUM
IBM BigFix Remote Control < 9.1.2 - Authenticated Path Traversal
Nov 30, 2016
CVSS 6.8
EPSS 0.03
CVE-2016-2932 MEDIUM
IBM BigFix Remote Control <9.1.3 - Code Injection
Nov 30, 2016
CVSS 5.3
EPSS 0.01
CVE-2016-2931 MEDIUM
IBM BigFix Remote Control < 9.1.2 - Unauthenticated Exposure of Sensitive Information via Network Sniffing
Nov 30, 2016
CVSS 5.3
EPSS 0.02
CVE-2016-2929 HIGH
IBM BigFix Remote Control < 9.1.2 - Weak Password Policy
Nov 25, 2016
CVSS 8.1
EPSS 0.01
CVE-2016-2928 MEDIUM
IBM BigFix Remote Control < 9.1.2 - Authenticated Sensitive Information Exposure via Error Logs
Nov 25, 2016
CVSS 4.3
EPSS 0.01
CVE-2016-2927 MEDIUM
IBM BigFix Remote Control < 9.1.2 - Exposure of Sensitive Information via Weak Encryption Algorithms
Nov 25, 2016
CVSS 5.9
EPSS 0.01
CVE-2016-2926 MEDIUM
IBM Rational Team Concert 4.0-4.0.7, 5.0-5.0.2, 6.0-6.0.2 Authenticated XSS via Crafted URL
Nov 25, 2016
CVSS 5.4
EPSS 0.01
CVE-2016-0319 HIGH
IBM Jazz Reporting Service <6.0.1 - XXE
Nov 25, 2016
CVSS 7.5
EPSS 0.02
CVE-2016-0318 MEDIUM
IBM Jazz Reporting Service <6.0.1 iFix006 - Info Disclosure
Nov 25, 2016
CVSS 5.0
EPSS 0.01
CVE-2016-0317 MEDIUM
IBM Jazz Reporting Service <6.0.1 - CSRF
Nov 25, 2016
CVSS 6.5
EPSS 0.01
CVE-2016-0316 MEDIUM
IBM Jazz Reporting Service <6.0.2 - XSS
Nov 25, 2016
CVSS 5.4
EPSS 0.01
CVE-2016-5992 LOW
IBM Sterling Connect:Direct <4.6.0.6-4.7.0.4 - DoS
Nov 25, 2016
CVSS 2.5
EPSS 0.00
CVE-2016-5991 MEDIUM
IBM Sterling Connect:Direct <4.6.0.6-4.7.0.4 - Privilege Escalation
Nov 25, 2016
CVSS 4.5
EPSS 0.00