Lucene search

K

Security Network Protection Firmware Security Vulnerabilities

cve
cve

CVE-2013-5442

Cross-site scripting (XSS) vulnerability in the Local Management Interface (LMI) in IBM Security Network Protection on XGS 5100 devices with firmware 5.1 before 5.1.0.6 and 5.1.1 before 5.1.1.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

7.1AI Score

0.002EPSS

2013-11-13 03:55 PM
25
cve
cve

CVE-2014-6183

IBM Security Network Protection 5.1 before 5.1.0.0 FP13, 5.1.1 before 5.1.1.0 FP8, 5.1.2 before 5.1.2.0 FP9, 5.1.2.1 before FP5, 5.2 before 5.2.0.0 FP5, and 5.3 before 5.3.0.0 FP1 on XGS devices allows remote authenticated users to execute arbitrary commands via unspecified vectors.

9.1AI Score

0.002EPSS

2014-11-23 12:59 AM
27
cve
cve

CVE-2014-6198

Cross-site request forgery (CSRF) vulnerability in IBM Security Network Protection 5.3 before 5.3.1 allows remote attackers to hijack the authentication of arbitrary users.

7.2AI Score

0.001EPSS

2015-06-28 10:59 AM
30
cve
cve

CVE-2016-0201

GSKit in IBM Security Network Protection 5.3.1 before 5.3.1.7 and 5.3.2 allows remote attackers to discover credentials by triggering an MD5 collision.

5.9CVSS

5.7AI Score

0.003EPSS

2016-01-18 05:59 AM
40