Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm websphere application server liberty vulnerabilities and exploits
(subscribe to this query)
356
VMScore
CVE-2020-4329
IBM WebSphere Application Server 7.0, 8.0, 8.5, 9.0 and Liberty 17.0.0.3 up to and including 20.0.0.4 could allow a remote, authenticated malicious user to obtain sensitive information, caused by improper parameter checking. This could be exploited to conduct spoofing attacks. IB...
Ibm Websphere Application Server
312
VMScore
CVE-2022-22393
IBM WebSphere Application Server Liberty 17.0.0.3 up to and including 22.0.0.5 , with the adminCenter-1.0 feature configured, could allow an authenticated user to issue a request to obtain the status of HTTP/HTTPS ports which are accessible by the application server. IBM X-Force ...
Ibm Websphere Application Server
312
VMScore
CVE-2021-39038
IBM WebSphere Application Server 9.0 and IBM WebSphere Application Server Liberty 17.0.0.3 up to and including 22.0.0.2 could allow a remote malicious user to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could e...
Ibm Websphere Application Server
312
VMScore
CVE-2020-4318
IBM Intelligent Operations Center for Emergency Management, Intelligent Operations Center (IOC), and IBM Water Operations for Waternamics are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the int...
Ibm Intelligent Operations Center 5.1.0
Ibm Intelligent Operations Center 5.1.0.2
Ibm Intelligent Operations Center 5.1.0.3
Ibm Intelligent Operations Center 5.1.0.4
Ibm Intelligent Operations Center 5.1.0.6
Ibm Intelligent Operations Center 5.2
Ibm Intelligent Operations Center 5.2.1
Ibm Intelligent Operations Center For Emergency Management 5.1.0
Ibm Intelligent Operations Center For Emergency Management 5.1.0.2
Ibm Intelligent Operations Center For Emergency Management 5.1.0.3
Ibm Intelligent Operations Center For Emergency Management 5.1.0.4
Ibm Intelligent Operations Center For Emergency Management 5.1.0.6
Ibm Water Operations For Waternamics 5.1.0
Ibm Water Operations For Waternamics 5.1.0.3
Ibm Water Operations For Waternamics 5.1.0.4
Ibm Water Operations For Waternamics 5.1.0.6
Ibm Water Operations For Waternamics 5.2
Ibm Water Operations For Waternamics 5.2.1
312
VMScore
CVE-2019-4663
IBM WebSphere Application Server - Liberty is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM ...
Ibm Websphere Application Server
312
VMScore
CVE-2019-4285
IBM WebSphere Application Server - Liberty Admin Center could allow a remote malicious user to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could send a specially-crafted HTTP request to hijack the victim's...
Ibm Websphere Application Server -
312
VMScore
CVE-2016-3042
Cross-site scripting (XSS) vulnerability in the Web UI in IBM WebSphere Application Server (WAS) Liberty prior to 16.0.0.3 allows remote authenticated users to inject arbitrary web script or HTML via vectors involving OpenID Connect clients.
Ibm Websphere Application Server
312
VMScore
CVE-2016-0385
Buffer overflow in IBM WebSphere Application Server (WAS) 7.0 prior to 7.0.0.43, 8.0 prior to 8.0.0.13, 8.5 prior to 8.5.5.10, 9.0 prior to 9.0.0.1, and Liberty prior to 16.0.0.3, when HttpSessionIdReuse is enabled, allows remote authenticated users to obtain sensitive informatio...
Ibm Websphere Application Server 8.5.5.2
Ibm Websphere Application Server 8.5.0.0
Ibm Websphere Application Server 8.0.0.9
Ibm Websphere Application Server 8.0.0.2
Ibm Websphere Application Server 8.0.0.12
Ibm Websphere Application Server 7.0.0.8
Ibm Websphere Application Server 7.0.0.7
Ibm Websphere Application Server 7.0.0.36
Ibm Websphere Application Server 7.0.0.35
Ibm Websphere Application Server 7.0.0.28
Ibm Websphere Application Server 7.0.0.27
Ibm Websphere Application Server 7.0.0.18
Ibm Websphere Application Server 7.0.0.17
Ibm Websphere Application Server 7.0.0.10
Ibm Websphere Application Server 7.0.0.1
Ibm Websphere Application Server 8.5.5.0
Ibm Websphere Application Server 8.5.5.1
Ibm Websphere Application Server 8.5.5.5
Ibm Websphere Application Server 8.5.5.4
Ibm Websphere Application Server 8.0.0.4
Ibm Websphere Application Server 8.0.0.3
Ibm Websphere Application Server 7.0.0.39
312
VMScore
CVE-2013-0540
IBM WebSphere Application Server (WAS) Liberty Profile 8.5 prior to 8.5.0.2, when SSL is not enabled, does not properly validate authentication cookies, which allows remote authenticated users to bypass intended access restrictions via an HTTP session.
Ibm Websphere Application Server 8.5.0.0
Ibm Websphere Application Server 8.5.0.1
187
VMScore
CVE-2017-1681
IBM WebSphere Application Server (IBM Liberty for Java for Bluemix 3.15) could allow a local malicious user to obtain sensitive information, caused by improper handling of application requests, which could allow unauthorized access to read a file. IBM X-Force ID: 134003.
Ibm Liberty
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3380
CVE-2024-1694
local file inclusion
CVE-2024-5645
CVE-2024-24919
XSS
CVE-2024-36774
CVE-2024-21306
SQL
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »