6.1

CVSS3.1

CVE-2025-13702 - IBM Sterling Partner Engagement Manager Cross-Site Scripting

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credent…

📅 Published: March 13, 2026, 6:33 p.m. 🔄 Last Modified: March 23, 2026, 1:40 p.m.

3.7

CVSS3.1

CVE-2025-13718 - IBM Sterling Partner Engagement Manager Information Disclosure

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow a remote attacker to obtain sensitive information in cleartext in a communication channel that can be sniffed by unauthorized actors.

📅 Published: March 13, 2026, 6:33 p.m. 🔄 Last Modified: March 23, 2026, 1:40 p.m.

5.3

CVSS3.1

CVE-2025-13723 - IBM Sterling Partner Engagement Manager Information Disclosure

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow an attacker to obtain sensitive user information using an expired access token

📅 Published: March 13, 2026, 6:32 p.m. 🔄 Last Modified: March 23, 2026, 1:40 p.m.

5.1

CVSS4.0

CVE-2025-12453 - Improper neutralization of input during web page generation vulnerability has been discovered in Op…

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in OpenText™ Vertica allows Reflected XSS.  The vulnerability could lead to Reflected XSS attack of cross-site scripting in Vertica management console application.This issue affects Vertica: from 10.0…

📅 Published: March 13, 2026, 6:30 p.m. 🔄 Last Modified: April 17, 2026, 3:25 p.m.

5.1

CVSS4.0

CVE-2025-12454 - Improper neutralization of input during web page generation vulnerability has been discovered in Op…

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in OpenText™ Vertica allows Reflected XSS.  The vulnerability could lead to Reflected XSS attack of cross-site scripting in Vertica management console application.This issue affects Vertica: from 10.0…

📅 Published: March 13, 2026, 6:30 p.m. 🔄 Last Modified: April 17, 2026, 3:23 p.m.

5.1

CVSS4.0

CVE-2025-12455 - Username Enumeration Observable Response Discrepancy vulnerability has been discovered in OpenText™…

Observable response discrepancy vulnerability in OpenText™ Vertica allows Password Brute Forcing.   The vulnerability could lead to Password Brute Forcing in Vertica management console application.This issue affects Vertica: from 10.0 through 10.X, from 11.0 through 11.X, from 12.0 through 12.X.

📅 Published: March 13, 2026, 6:30 p.m. 🔄 Last Modified: April 17, 2026, 3:18 p.m.

5.3

CVSS3.1

CVE-2025-13726 - IBM Sterling Partner Engagement Manager Information Disclosure

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow a remote attacker to obtain sensitive information when detailed technical error messages are returned. This information could be used in further attacks against the system.

📅 Published: March 13, 2026, 6:26 p.m. 🔄 Last Modified: March 23, 2026, 1:40 p.m.

3.1

CVSS3.1

CVE-2025-14811 - IBM Sterling Partner Engagement Manager Information Disclosure

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow an attacker to obtain sensitive information from the query string of an HTTP GET method to process a request which could be obtained using man in the middle techniques.

📅 Published: March 13, 2026, 6:22 p.m. 🔄 Last Modified: April 2, 2026, 8:23 p.m.

0

CVSS3.1

CVE-2026-31897 - FreeRDP has an out-of-bounds read in `freerdp_bitmap_decompress_planar`

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.24.0, there is an out-of-bounds read in freerdp_bitmap_decompress_planar when SrcSize is 0. The function dereferences *srcp (which points to pSrcData) without first verifying that SrcSize >= 1. When SrcSize is 0 and pSrcDat…

📅 Published: March 13, 2026, 5:42 p.m. 🔄 Last Modified: March 23, 2026, 1:40 p.m.

9.3

CVSS4.0

CVE-2026-31806 - FreeRDP has a Heap Buffer Overflow in nsc_process_message() via Unchecked SURFACE_BITS_COMMAND Bitm…

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.24.0, the gdi_surface_bits() function processes SURFACE_BITS_COMMAND messages sent by the RDP server. When the command is handled using NSCodec, the bmp.width and bmp.height values provided by the server are not properly v…

📅 Published: March 13, 2026, 5:40 p.m. 🔄 Last Modified: March 23, 2026, 1:40 p.m.
Total resulsts: 349182
Page 1125 of 34,919
« previous page » next page
Filters