Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Security Verify
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-29676 1 Ibm 1 Security Verify 2024-02-04 5.8 MEDIUM 5.4 MEDIUM
IBM Security Verify (IBM Security Verify Privilege Vault 10.9.66) is vulnerable to link injection. By persuading a victim to click on a specially-crafted URL link, a remote attacker could exploit this vulnerability to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking
CVE-2021-20583 1 Ibm 1 Security Verify 2024-02-04 4.0 MEDIUM 4.9 MEDIUM
IBM Security Verify (IBM Security Verify Privilege Vault 10.9.66) could disclose sensitive information through an HTTP GET request by a privileged user due to improper input validation.. IBM X-Force ID: 199396.
CVE-2021-29677 1 Ibm 1 Security Verify 2024-02-04 3.5 LOW 5.4 MEDIUM
IBM Security Verify (IBM Security Verify Privilege Vault 10.9.66) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.