Ibm Tivoli Change And Configuration Management Database vulnerabilities
6 known vulnerabilities affecting ibm/tivoli_change_and_configuration_management_database.
Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM6
Vulnerabilities
Page 1 of 1
CVE-2012-0195MEDIUMCVSS 4.3v6.2v7.1+1 more2012-03-13
CVE-2012-0195 [MEDIUM] CWE-79 CVE-2012-0195: Cross-site scripting (XSS) vulnerability in the Start Center Layout and Configuration component in I
Cross-site scripting (XSS) vulnerability in the Start Center Layout and Configuration component in IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5; IBM Tivoli Asset Management for IT 6.2, 7.1, and 7.2; IBM Tivoli Service Request Manager 7.1 and 7.2; IBM Maximo Service Desk 6.2; and IBM Tivoli Change and Configuration Manag
nvd
CVE-2011-4817MEDIUMCVSS 4.0v6.2v7.1+1 more2012-03-13
CVE-2011-4817 [MEDIUM] CWE-200 CVE-2011-4817: The About option on the Help menu in IBM Maximo Asset Management and Asset Management Essentials 6.2
The About option on the Help menu in IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5; IBM Tivoli Asset Management for IT 6.2, 7.1, and 7.2; IBM Tivoli Service Request Manager 7.1 and 7.2; IBM Maximo Service Desk 6.2; and IBM Tivoli Change and Configuration Management Database (CCMDB) 6.2, 7.1, and 7.2 shows the username,
nvd
CVE-2011-4816MEDIUMCVSS 6.5v6.2v7.1+1 more2012-03-13
CVE-2011-4816 [MEDIUM] CWE-89 CVE-2011-4816: SQL injection vulnerability in the KPI component in IBM Maximo Asset Management and Asset Management
SQL injection vulnerability in the KPI component in IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5; IBM Tivoli Asset Management for IT 6.2, 7.1, and 7.2; IBM Tivoli Service Request Manager 7.1 and 7.2; IBM Maximo Service Desk 6.2; and IBM Tivoli Change and Configuration Management Database (CCMDB) 6.2, 7.1, and 7.2 allows
nvd
CVE-2011-1394MEDIUMCVSS 5.0v6.2v7.1+1 more2012-03-13
CVE-2011-1394 [MEDIUM] CWE-399 CVE-2011-1394: IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5; IBM Tivoli Asset Mana
IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5; IBM Tivoli Asset Management for IT 6.2, 7.1, and 7.2; IBM Tivoli Service Request Manager 7.1 and 7.2; IBM Maximo Service Desk 6.2; and IBM Tivoli Change and Configuration Management Database (CCMDB) 6.2, 7.1, and 7.2 allow remote attackers to cause a denial of service (memo
nvd
CVE-2011-1397MEDIUMCVSS 6.8v6.2v7.1+1 more2012-03-13
CVE-2011-1397 [MEDIUM] CWE-352 CVE-2011-1397: Cross-site request forgery (CSRF) vulnerability in the Labor Reporting page in IBM Maximo Asset Mana
Cross-site request forgery (CSRF) vulnerability in the Labor Reporting page in IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5; IBM Tivoli Asset Management for IT 6.2, 7.1, and 7.2; IBM Tivoli Service Request Manager 7.1 and 7.2; IBM Maximo Service Desk 6.2; and IBM Tivoli Change and Configuration Management Database (CCM
nvd
CVE-2012-0715MEDIUMCVSS 4.3v7.2.12012-03-02
CVE-2012-0715 [MEDIUM] CWE-79 CVE-2012-0715: Cross-site scripting (XSS) vulnerability in the Gantt applet viewer in IBM Tivoli Change and Configu
Cross-site scripting (XSS) vulnerability in the Gantt applet viewer in IBM Tivoli Change and Configuration Management Database (CCMDB) 7.2.1 and IBM ILOG JViews Gantt allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
nvd