Medium - CVE-2023-47159 - IBM Sterling File Gateway 6.0.0.0 through...
IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to enumerate usernames due to an observable discrepancy in request responses.
Medium - CVE-2023-52292 - IBM Sterling File Gateway 6.0.0.0 through...
IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the...
Medium - CVE-2024-22316 - IBM Sterling File Gateway 6.0.0.0 through...
IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to perform unauthorized actions to another user's data due to improper access...
Medium - CVE-2024-37527 - IBM OpenPages with Watson 8.3 and 9.0 is...
IBM OpenPages with Watson 8.3 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the...
Medium - CVE-2024-38320 - IBM Storage Protect for Virtual Environments:...
IBM Storage Protect for Virtual Environments: Data Protection for VMware and Storage Protect Backup-Archive Client 8.1.0.0 through 8.1.23.0 uses weaker than expected cryptographic algorithms that...
Medium - CVE-2024-38325 - IBM Storage Defender 2.0.0 through 2.0.7...
IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI could allow a remote attacker to obtain sensitive information, caused by sending network requests over an insecure...
NA - CVE-2024-45598 - Cacti is an open source performance and fault...
Cacti is an open source performance and fault management framework. Prior to 1.2.29, an administrator can change the `Poller Standard Error Log Path` parameter in either Installation Step 5 or in...
Medium - CVE-2024-27256 - IBM MQ Container 3.0.0, 3.0.1, 3.1.0 through...
IBM MQ Container 3.0.0, 3.0.1, 3.1.0 through 3.1.3 CD, 2.0.0 LTS through 2.0.22 LTS and 2.4.0 through 2.4.8, 2.3.0 through 2.3.3, 2.2.0 through 2.2.2 uses weaker than expected cryptographic...
NA - CVE-2024-48417 - Edimax AC1200 Wi-Fi 5 Dual-Band Router...
Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to Cross Site Scripting (XSS) in : /bin/goahead via /goform/setStaticRoute, /goform/fromSetFilterUrlFilter, and...