Skip to main content

Vendor/product archive

ibm / infosphere_information_server CVEs

Beta · best-effort

189 CVEs tagged to ibm / infosphere_information_server9 Critical, 39 High, 124 Medium, 17 Low, 0 Unrated.

CVE-2012-4818

Published Sep 29, 2022

IBM InfoSphere Information Server 8.1, 8.5, and 8,7 could allow a remote authenticated attacker to obtain sensitive information, caused by improper restrictions on directories. An…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-31768

Published Jun 6, 2022

IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add,…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-22443

Published Apr 28, 2022

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the in…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-22441

Published Apr 28, 2022

IBM InfoSphere Information Server 11.7 could allow an authenticated user to view information of higher privileged users and groups due to a privilege escalation vulnerability. IBM…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-22427

Published Apr 28, 2022

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the in…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-22322

Published Apr 28, 2022

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the in…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-38952

Published Apr 28, 2022

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the in…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-38887

Published Nov 10, 2021

IBM InfoSphere Information Server 11.7 could allow an authenticated user to obtain sensitive information from application response requests that could be used in further attacks a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-29875

Published Nov 2, 2021

IBM InfoSphere Information Server 11.7 could allow an attacker to obtain sensitive information due to a insecure third party domain access vulnerability. IBM X-Force ID: 206572.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-29730

Published Jul 9, 2021

IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add,…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-4997

Published Apr 5, 2021

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the in…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-27583

Published Jan 26, 2021

IBM InfoSphere Information Server 8.5.0.0 is affected by deserialization of untrusted data which could allow remote unauthenticated attackers to execute arbitrary code. NOTE: This…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-4886

Published Nov 13, 2020

IBM InfoSphere Information Server 11.7 stores sensitive information in the browser's history that could be obtained by a user who has access to the same system. IBM X-Force ID: 19…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-4741

Published Oct 12, 2020

IBM InfoSphere Information Server 11.5 and 11.7 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 101-125 of 189 CVEsPage 5 of 8