Ibm Resilient vulnerabilities

4 known vulnerabilities affecting ibm/resilient.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM2

Vulnerabilities

Page 1 of 1
CVE-2021-20527HIGHCVSS 7.2fixed in 38.2.41≥ 39.0, < 39.0.6536+4 more2021-04-19
CVE-2021-20527 [HIGH] CWE-77 CVE-2021-20527: IBM Resilient SOAR V38.0 could allow a privileged user to create create malicious scripts that could IBM Resilient SOAR V38.0 could allow a privileged user to create create malicious scripts that could be executed as another user. IBM X-Force ID: 198759.
nvd
CVE-2020-4635MEDIUMCVSS 5.3vSOAR 402021-03-19
CVE-2020-4635 [MEDIUM] CVE-2020-4635: IBM Resilient SOAR 40 and earlier could disclose sensitive information by allowing a user to enumera IBM Resilient SOAR 40 and earlier could disclose sensitive information by allowing a user to enumerate usernames.
cvelistv5nvd
CVE-2020-4633HIGHCVSS 8.8v382020-12-11
CVE-2020-4633 [HIGH] CWE-20 CVE-2020-4633: IBM Resilient SOAR V38.0 could allow a remote attacker to execute arbitrary code on the system, caus IBM Resilient SOAR V38.0 could allow a remote attacker to execute arbitrary code on the system, caused by formula injection due to improper input validation.
cvelistv5nvd
CVE-2016-6062MEDIUMCVSS 6.1v26.0v26.1+1 more2017-02-16
CVE-2016-6062 [MEDIUM] CWE-79 CVE-2016-6062: IBM Resilient v26.0, v26.1, and v26.2 is vulnerable to cross-site scripting. This vulnerability allo IBM Resilient v26.0, v26.1, and v26.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference#: 213457065.
nvd