Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
data master vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2015-1984
IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to bypass intended access restrictions and read arbitrary profiles via unspecified vectors, as demonstrated by discovering usernames for use i...
Ibm Infosphere Master Data Management 11.0
Ibm Infosphere Master Data Management 11.3
Ibm Infosphere Master Data Management 9.1
Ibm Infosphere Master Data Management 10.1
Ibm Infosphere Master Data Management 11.4
NA
CVE-2015-1968
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Ibm Infosphere Master Data Management 9.1
Ibm Infosphere Master Data Management 10.1
Ibm Infosphere Master Data Management 11.4
Ibm Infosphere Master Data Management 11.0
Ibm Infosphere Master Data Management 11.3
5.4
CVSSv3
CVE-2015-7492
Cross-site scripting (XSS) vulnerability in Reference Data Management (RDM) in IBM InfoSphere Master Data Management 10.1, 11.0 before FP5, 11.3, 11.4, and 11.5 before FP1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Ibm Infosphere Master Data Management Reference Data Management 11.5
Ibm Infosphere Master Data Management Reference Data Management 11.4
Ibm Infosphere Master Data Management Reference Data Management 11.0
Ibm Infosphere Master Data Management Reference Data Management 11.3
Ibm Infosphere Master Data Management Reference Data Management 10.1
8.8
CVSSv3
CVE-2020-6249
The use of an admin backend report within SAP Master Data Governance, versions - S4CORE 101, S4FND 102, 103, 104, SAP_BS_FND 748; allows an malicious user to execute crafted database queries, exposing the backend database, leading to SQL Injection.
Sap Master Data Governance \\(s4core\\) 101
Sap Master Data Governance \\(s4fnd\\) 102
Sap Master Data Governance \\(s4fnd\\) 103
Sap Master Data Governance \\(s4fnd\\) 104
Sap Master Data Governance \\(sap Bs Fnd\\) 748
NA
CVE-2014-4788
IBM Initiate Master Data Service 9.5 prior to 9.5.093013, 9.7 prior to 9.7.093013, 10.0 prior to 10.0.093013, and 10.1 prior to 10.1.093013 does not have an off autocomplete attribute for authentication fields, which makes it easier for remote malicious users to obtain access by ...
Ibm Initiate Master Data Service 10.1
Ibm Initiate Master Data Service 9.5
Ibm Initiate Master Data Service 9.7
Ibm Initiate Master Data Service 10.0
NA
CVE-2014-4783
Cross-site request forgery (CSRF) vulnerability in IBM Initiate Master Data Service 9.5 prior to 9.5.093013, 9.7 prior to 9.7.093013, 10.0 prior to 10.0.093013, and 10.1 prior to 10.1.093013 allows remote malicious users to hijack the authentication of arbitrary users for request...
Ibm Initiate Master Data Service 10.1
Ibm Initiate Master Data Service 9.5
Ibm Initiate Master Data Service 9.7
Ibm Initiate Master Data Service 10.0
NA
CVE-2014-4784
IBM Initiate Master Data Service 9.5 prior to 9.5.093013, 9.7 prior to 9.7.093013, 10.0 prior to 10.0.093013, and 10.1 prior to 10.1.093013 does not properly restrict use of FRAME elements, which allows remote malicious users to conduct phishing attacks, and bypass intended acces...
Ibm Initiate Master Data Service 10.0
Ibm Initiate Master Data Service 10.1
Ibm Initiate Master Data Service 9.5
Ibm Initiate Master Data Service 9.7
NA
CVE-2014-4785
Cross-site request forgery (CSRF) vulnerability in IBM Initiate Master Data Service 9.5 prior to 9.5.093013, 9.7 prior to 9.7.093013, 10.0 prior to 10.0.093013, and 10.1 prior to 10.1.093013 allows remote authenticated users to hijack the authentication of arbitrary users for req...
Ibm Initiate Master Data Service 10.0
Ibm Initiate Master Data Service 10.1
Ibm Initiate Master Data Service 9.5
Ibm Initiate Master Data Service 9.7
NA
CVE-2014-4786
IBM Initiate Master Data Service 9.5 prior to 9.5.093013, 9.7 prior to 9.7.093013, 10.0 prior to 10.0.093013, and 10.1 prior to 10.1.093013 does not properly restrict use of FRAME elements, which allows remote authenticated users to conduct phishing attacks, and bypass intended a...
Ibm Initiate Master Data Service 10.0
Ibm Initiate Master Data Service 10.1
Ibm Initiate Master Data Service 9.5
Ibm Initiate Master Data Service 9.7
NA
CVE-2014-4787
Cross-site scripting (XSS) vulnerability in IBM Initiate Master Data Service 9.5 prior to 9.5.093013, 9.7 prior to 9.7.093013, 10.0 prior to 10.0.093013, and 10.1 prior to 10.1.093013 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors...
Ibm Initiate Master Data Service 9.7
Ibm Initiate Master Data Service 10.0
Ibm Initiate Master Data Service 10.1
Ibm Initiate Master Data Service 9.5
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
firmware
CVE-2023-52866
CVE-2024-4367
CVE-2024-1721
CVE-2023-34992
XML injection
CVE-2023-52817
SQL
CVE-2023-52855
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »