Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Enovia Smarteam
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2010-0959 1 Ibm 1 Enovia Smarteam 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in WebEditor/Authentication/LoginPage.aspx in IBM ENOVIA SmarTeam 5 allows remote attackers to inject arbitrary web script or HTML via the errMsg parameter.
CVE-2008-4581 1 Ibm 1 Enovia Smarteam 2024-02-04 4.0 MEDIUM N/A
The Editor in IBM ENOVIA SmarTeam 5 before release 18 SP5, and release 19 before SP01, allows remote authenticated users to bypass intended access restrictions and read Document objects via the Workflow Process (aka Flow Process) view.