Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm curam social program management 6.0.4.5 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2014-4804
Curam Universal Access in IBM Curam Social Program Management 5.2 before SP6 EP6, 6.0 SP2 before EP26, 6.0.4.5 before iFix007, 6.0.5.4 before iFix005, and 6.0.5.5 before iFix003, when SPI inclusion is enabled, allows remote malicious users to obtain sensitive user data by visitin...
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
3.5
CVSSv2
CVE-2014-6091
Cross-site scripting (XSS) vulnerability in IBM Curam Social Program Management (SPM) 6.0.4 prior to 6.0.4.5 iFix7 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
5
CVSSv2
CVE-2014-6092
IBM Curam Social Program Management (SPM) 5.2 before SP6 EP6, 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.6, and 6.0.5 prior to 6.0.5.6 requires failed-login handling for web-service accounts to have the same lockout policy as for standard user accounts, which makes it easier for r...
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.5
3.5
CVSSv2
CVE-2014-4803
CRLF injection vulnerability in the Universal Access implementation in IBM Curam Social Program Management 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.5 iFix007, and 6.0.5 prior to 6.0.5.5 iFix003, when WebSphere Application Server is not used, allows remote authenticated users to ...
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
3.5
CVSSv2
CVE-2014-6191
Cross-site scripting (XSS) vulnerability in IBM Curam Social Program Management 6.0 SP2, 6.0.4, and 6.0.5 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors. IBM X-Force ID: 98568.
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.2
5
CVSSv2
CVE-2014-4843
Curam Universal Access in IBM Curam Social Program Management (SPM) 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.6, and 6.0.5 prior to 6.0.5.5 iFix5 allows remote malicious users to obtain sensitive information about internal caseworker usernames via vectors related to a URL.
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.1
3.5
CVSSv2
CVE-2014-3012
Multiple CRLF injection vulnerabilities in IBM Curam Social Program Management 5.2 SP1 up to and including 6.0.5.4 allow remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified parameters to custom JSPs.
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.3.0
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.2
3.5
CVSSv2
CVE-2014-6192
Cross-site scripting (XSS) vulnerability in IBM Curam Social Program Management 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.5 iFix10, 6.0.5 prior to 6.0.5.6, and 6.0.5.5a prior to 6.0.5.8 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.5a
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.7
3.5
CVSSv2
CVE-2014-3013
Multiple cross-site scripting (XSS) vulnerabilities in IBM Curam Social Program Management 4.5 SP10 up to and including 6.0.5.4 allow remote authenticated users to inject arbitrary web script or HTML via crafted input to a (1) custom JSP or (2) custom renderer.
Ibm Curam Social Program Management 5.0
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 4.5
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.3.0
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.1
6.5
CVSSv2
CVE-2014-8903
IBM Curam Social Program Management 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.5iFix10 and 6.0.5 prior to 6.0.5.6 allows remote authenticated users to load arbitrary Java classes via unspecified vectors.
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.10
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.9
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.7
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
firewall
CVE-2024-35649
stored XSS
CVE-2022-28654
CVE-2020-35153
CVE-2024-27348
CVE-2022-28652
local users
CVE-2017-3506
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »