Search Results (23832 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-25928 3 Ibm, Linux, Microsoft 4 Aix, Infosphere Information Server, Linux Kernel and 1 more 2025-03-12 4.6 Medium
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 247646.
CVE-2024-37527 3 Ibm, Linux, Microsoft 3 Openpages With Watson, Linux Kernel, Windows 2025-03-11 5.4 Medium
IBM OpenPages with Watson 8.3 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
CVE-2023-50945 3 Ibm, Linux, Microsoft 4 Aix, Common Licensing, Linux Kernel and 1 more 2025-03-11 6.2 Medium
IBM Common Licensing 9.0 stores user credentials in plain clear text which can be read by a local user.
CVE-2023-50946 3 Ibm, Linux, Microsoft 4 Aix, Common Licensing, Linux Kernel and 1 more 2025-03-11 6.5 Medium
IBM Common Licensing 9.0 could allow an authenticated user to modify a configuration file that they should not have access to due to a broken authorization mechanism.
CVE-2024-40706 3 Ibm, Linux, Microsoft 4 Aix, Infosphere Information Server, Linux Kernel and 1 more 2025-03-11 5.3 Medium
IBM InfoSphere Information Server 11.7 could allow a remote user to obtain sensitive version information that could aid in further attacks against the system.
CVE-2024-52363 3 Ibm, Linux, Microsoft 4 Aix, Infosphere Information Server, Linux Kernel and 1 more 2025-03-11 6.5 Medium
IBM InfoSphere Information Server 11.7 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system.
CVE-2023-23472 3 Ibm, Linux, Microsoft 4 Aix, Infosphere Information Server, Linux Kernel and 1 more 2025-03-11 3.1 Low
IBM InfoSphere DataStage Flow Designer (InfoSphere Information Server 11.7) could allow an authenticated user to obtain sensitive information that could aid in further attacks against the system.
CVE-2022-30170 1 Microsoft 21 Windows 10, Windows 10 1507, Windows 10 1607 and 18 more 2025-03-11 7.3 High
Windows Credential Roaming Service Elevation of Privilege Vulnerability
CVE-2022-38020 1 Microsoft 1 Visual Studio Code 2025-03-11 7.3 High
Visual Studio Code Elevation of Privilege Vulnerability
CVE-2022-37972 1 Microsoft 1 Endpoint Configuration Manager 2025-03-11 7.5 High
Microsoft Endpoint Configuration Manager Spoofing Vulnerability
CVE-2022-38019 1 Microsoft 1 Av1 Video Extension 2025-03-11 7.8 High
AV1 Video Extension Remote Code Execution Vulnerability
CVE-2022-38012 1 Microsoft 1 Edge Chromium 2025-03-11 7.7 High
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2022-37958 1 Microsoft 18 Windows 10, Windows 10 1507, Windows 10 1607 and 15 more 2025-03-11 8.1 High
SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Execution Vulnerability
CVE-2022-37963 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2025-03-11 7.8 High
Microsoft Office Visio Remote Code Execution Vulnerability
CVE-2022-38011 1 Microsoft 3 Raw Image Extension, Windows 10, Windows 11 2025-03-11 7.3 High
Raw Image Extension Remote Code Execution Vulnerability
CVE-2022-37962 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2025-03-11 7.8 High
Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2022-38010 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-03-11 7.8 High
Microsoft Office Visio Remote Code Execution Vulnerability
CVE-2022-38007 1 Microsoft 2 Azure Arc, Azure Guest Configuration 2025-03-11 7.8 High
Azure Guest Configuration and Azure Arc-enabled servers Elevation of Privilege Vulnerability
CVE-2022-37959 1 Microsoft 4 Windows Server 2012, Windows Server 2016, Windows Server 2019 and 1 more 2025-03-11 6.5 Medium
Network Device Enrollment Service (NDES) Security Feature Bypass Vulnerability
CVE-2022-38006 1 Microsoft 9 Windows 10, Windows 11, Windows 7 and 6 more 2025-03-11 6.5 Medium
Windows Graphics Component Information Disclosure Vulnerability