Search
Search Results (5 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-17482 | 1 Ibm | 1 Documentation Offline | 2026-08-13 | 9.8 Critical |
| IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper control of file paths. | ||||
| CVE-2026-17468 | 1 Ibm | 1 Documentation Offline | 2026-08-13 | 5.3 Medium |
| IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to forge valid session tokens due to the use of a hardcoded cryptographic key. | ||||
| CVE-2026-17473 | 1 Ibm | 1 Documentation Offline | 2026-08-13 | 7.5 High |
| IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to read arbitrary files due to improper limitation of a pathname to a restricted directory. | ||||
| CVE-2026-17481 | 1 Ibm | 1 Documentation Offline | 2026-08-13 | 8.8 High |
| IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper output neutralization for logs. | ||||
| CVE-2026-16713 | 1 Ibm | 1 Documentation Offline | 2026-08-13 | 4.3 Medium |
| IBM Documentation Offline 1.0.0 through 1.4.1 IBM Documentation could allow a remote attacker to obtain sensitive information due to a security misconfiguration where the documentation server binds to an unrestricted IP address. | ||||
Page 1 of 1.