Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm curam social program management 6.0.5.0 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-6090
Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) DataMappingEditorCommands, (2) DatastoreEditorCommands, and (3) IEGEditorCommands servlets in IBM Curam Social Program Management (SPM) 5.2 SP6 before EP6, 6.0 SP2 before EP26, 6.0.3 prior to 6.0.3.0 iFix8, 6.0...
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.3.0
Ibm Curam Social Program Management 5.2
NA
CVE-2014-6092
IBM Curam Social Program Management (SPM) 5.2 before SP6 EP6, 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.6, and 6.0.5 prior to 6.0.5.6 requires failed-login handling for web-service accounts to have the same lockout policy as for standard user accounts, which makes it easier for r...
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
NA
CVE-2014-4803
CRLF injection vulnerability in the Universal Access implementation in IBM Curam Social Program Management 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.5 iFix007, and 6.0.5 prior to 6.0.5.5 iFix003, when WebSphere Application Server is not used, allows remote authenticated users to ...
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
5.4
CVSSv3
CVE-2014-6191
Cross-site scripting (XSS) vulnerability in IBM Curam Social Program Management 6.0 SP2, 6.0.4, and 6.0.5 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors. IBM X-Force ID: 98568.
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
5.3
CVSSv3
CVE-2014-4843
Curam Universal Access in IBM Curam Social Program Management (SPM) 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.6, and 6.0.5 prior to 6.0.5.5 iFix5 allows remote malicious users to obtain sensitive information about internal caseworker usernames via vectors related to a URL.
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.1
NA
CVE-2014-3012
Multiple CRLF injection vulnerabilities in IBM Curam Social Program Management 5.2 SP1 up to and including 6.0.5.4 allow remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified parameters to custom JSPs.
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.3.0
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0.4.5
NA
CVE-2014-6192
Cross-site scripting (XSS) vulnerability in IBM Curam Social Program Management 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.5 iFix10, 6.0.5 prior to 6.0.5.6, and 6.0.5.5a prior to 6.0.5.8 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Ibm Curam Social Program Management 6.0.5.5a
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
NA
CVE-2014-3013
Multiple cross-site scripting (XSS) vulnerabilities in IBM Curam Social Program Management 4.5 SP10 up to and including 6.0.5.4 allow remote authenticated users to inject arbitrary web script or HTML via crafted input to a (1) custom JSP or (2) custom renderer.
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 4.5
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.3.0
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 5.0
8.8
CVSSv3
CVE-2014-8903
IBM Curam Social Program Management 6.0 SP2 before EP26, 6.0.4 prior to 6.0.4.5iFix10 and 6.0.5 prior to 6.0.5.6 allows remote authenticated users to load arbitrary Java classes via unspecified vectors.
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.5.9
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.4.9
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.10
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.4
5.4
CVSSv3
CVE-2016-9979
IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted se...
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.5.9
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.1.0.3
Ibm Curam Social Program Management 6.1.0.2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
buffer overflow
type confusion
server-side request forgery
CVE-2024-38440
CVE-2024-27801
CVE-2024-5868
CVE-2024-0582
CVE-2024-37643
CVE-2024-3105
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »