Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
36 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.4) | 0.56% | — | IBM Doors NextIBM Engineering Requirements Management Doors NextIBM Engineering Test ManagementIBM Engineering Workflow Management+6 | 2/9/2020 | 17/6/2026 | IBM Jazz Team Server based Applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 182397. | |
| Modificada | Media (5.4) | 0.56% | — | IBM Doors NextIBM Engineering Requirements Management Doors NextIBM Engineering Test ManagementIBM Engineering Workflow Management+6 | 2/9/2020 | 17/6/2026 | IBM Jazz Team Server based Applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 181122. | |
| Modificada | Media (5.4) | 0.56% | — | IBM Engineering Requirements Management Doors Next | 4/8/2020 | 17/6/2026 | IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-force ID: 183046. | |
| Modificada | Crítica (9.8) | 2.5% | — | IBM Engineering Requirements Management Doors | 27/6/2018 | 17/6/2026 | An undisclosed vulnerability in IBM Rational DOORS 9.5.1 through 9.6.1.10 application allows an attacker to gain DOORS administrator privileges. IBM X-Force ID: 140208. | |
| Modificada | Media (5.4) | 0.94% | — | IBM Engineering Requirements Management Doors | 26/1/2018 | 17/6/2026 | IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 131769. | |
| Modificada | Media (5.4) | 0.94% | — | IBM Engineering Requirements Management Doors | 26/1/2018 | 17/6/2026 | IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 131763. | |
| Modificada | Media (6.8) | 0.43% | — | IBM Engineering Requirements Management Doors | 26/1/2018 | 17/6/2026 | IBM Doors Web Access 9.5 and 9.6 could allow an attacker with physical access to the system to log into the application using previously stored credentials. IBM X-Force ID: 130914. | |
| Modificada | Media (5.4) | 0.94% | — | IBM Engineering Requirements Management Doors | 26/1/2018 | 17/6/2026 | IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 130808. | |
| Modificada | Media (5.4) | 0.94% | — | IBM Engineering Requirements Management Doors | 26/1/2018 | 17/6/2026 | IBM DOORS 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 130411. | |
| Modificada | Media (5.4) | 1.2% | — | IBM Engineering Requirements Management Doors | 26/1/2018 | 17/6/2026 | IBM Doors Web Access 9.5 and 9.6 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force… | |
| Modificada | Media (4.3) | 1.2% | — | IBM Engineering Requirements Management Doors | 26/1/2018 | 17/6/2026 | IBM Doors Web Access 9.5 and 9.6 could allow an authenticated user to obtain sensitive information from HTTP internal server error responses. IBM X-Force ID: 129825. |