cbcvebase.

Ibm Infosphere Master Data Management vulnerabilities

26 known vulnerabilities affecting ibm/infosphere_master_data_management.

Total CVEs
26
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH5MEDIUM17LOW4

Vulnerabilities

Page 2 of 2
CVE-2015-4960P4MEDIUMCVSS 4.1v9.1v10.1+3 more2016-01-17
CVE-2015-4960 [MEDIUM] CWE-254 CVE-2015-4960: IBM InfoSphere Master Data Management - Collaborative Edition 9.1, 10.1, 11.0 before 11.0.0.0 IF11, IBM InfoSphere Master Data Management - Collaborative Edition 9.1, 10.1, 11.0 before 11.0.0.0 IF11, 11.3 before 11.3.0.0 IF7, and 11.4 before 11.4.0.4 IF1 allows remote authenticated users to conduct clickjacking attacks via a crafted web site.
nvd
CVE-2015-1980P4LOWCVSS 3.5v9.1v10.1+3 more2015-07-20
CVE-2015-1980 [LOW] CWE-20 CVE-2015-1980: IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before F IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to conduct clickjacking attacks via unspecified vectors.
nvd
CVE-2015-1968P4LOWCVSS 3.5v9.1v10.1+3 more2015-07-20
CVE-2015-1968 [LOW] CWE-79 CVE-2015-1968: Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management Collaborative Edit Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
nvd
CVE-2015-1982P4MEDIUMCVSS 4.0v9.1v10.1+3 more2015-07-20
CVE-2015-1982 [MEDIUM] CWE-200 CVE-2015-1982: IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before F IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to obtain sensitive information via a crafted request, which reveals the full path in an error message.
nvd
CVE-2014-3009P4LOWCVSS 3.5v10.0v10.1+1 more2014-08-01
CVE-2014-3009 [LOW] CWE-20 CVE-2014-3009: The GDS component in IBM InfoSphere Master Data Management - Collaborative Edition 10.0 through 11.0 The GDS component in IBM InfoSphere Master Data Management - Collaborative Edition 10.0 through 11.0 and InfoSphere Master Data Management Server for Product Information Management 9.0 and 9.1 does not properly handle FRAME elements, which makes it easier for remote authenticated users to conduct phishing attacks via a crafted web site.
nvd
CVE-2015-4958P4LOWCVSS 3.3v9.1v10.1+3 more2016-01-17
CVE-2015-4958 [LOW] CWE-200 CVE-2015-4958: IBM InfoSphere Master Data Management - Collaborative Edition 9.1, 10.1, 11.0 before 11.0.0.0 IF11, IBM InfoSphere Master Data Management - Collaborative Edition 9.1, 10.1, 11.0 before 11.0.0.0 IF11, 11.3 before 11.3.0.0 IF7, and 11.4 before 11.4.0.4 IF1 does not properly restrict browser caching, which allows local users to obtain sensitive information by reading cache files.
nvd
Ibm Infosphere Master Data Management vulnerabilities | cvebase