Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm curam social program management 5.2 vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2014-6090
Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) DataMappingEditorCommands, (2) DatastoreEditorCommands, and (3) IEGEditorCommands servlets in IBM Curam Social Program Management (SPM) 5.2 SP6 before EP6, 6.0 SP2 before EP26, 6.0.3 prior to 6.0.3.0 iFix8, 6.0...
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0.3.0
3.5
CVSSv2
CVE-2014-3012
Multiple CRLF injection vulnerabilities in IBM Curam Social Program Management 5.2 SP1 up to and including 6.0.5.4 allow remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified parameters to custom JSPs.
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.3.0
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.2
3.5
CVSSv2
CVE-2014-3013
Multiple cross-site scripting (XSS) vulnerabilities in IBM Curam Social Program Management 4.5 SP10 up to and including 6.0.5.4 allow remote authenticated users to inject arbitrary web script or HTML via crafted input to a (1) custom JSP or (2) custom renderer.
Ibm Curam Social Program Management 5.0
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 4.5
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.3.0
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.1
3.5
CVSSv2
CVE-2016-9979
IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted se...
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.9
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.1.0.0
Ibm Curam Social Program Management 6.1.0.3
4
CVSSv2
CVE-2016-9978
IBM Curam Social Program Management 5.2, 6.0, and 7.0 could allow an authenticated malicious user to disclose sensitive information. IBM X-Force ID: 120254.
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.0
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.9
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.3
3.5
CVSSv2
CVE-2017-1106
IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted se...
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.0
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.9
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.10
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.9
4
CVSSv2
CVE-2016-8923
IBM Curam Social Program Management 5.2, 6.0, and 7.0 contains a vulnerability that would allow an authorized user to obtain sensitive information from the profile of a higher privileged user that they should not have access to. IBM X-Force ID: 118536.
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0.0
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.8
3.5
CVSSv2
CVE-2016-9980
IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted se...
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.1
8.5
CVSSv2
CVE-2016-6111
IBM Curam Social Program Management 6.0 and 7.0 are vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all availab...
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0.0
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.5.9
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.1
5
CVSSv2
CVE-2014-6092
IBM Curam Social Program Management (SPM) 5.2 before SP6 EP6, 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.6, and 6.0.5 prior to 6.0.5.6 requires failed-login handling for web-service accounts to have the same lockout policy as for standard user accounts, which makes it easier for r...
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.5
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-17519
open redirect
CVE-2024-21683
cache poisoning
CVE-2021-47524
CVE-2021-47521
CVE-2024-5229
CVE-2021-47560
local
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »