Search Results (Refine Search)
- CPE Product Version: cpe:/a:ibm:bigfix_platform:9.0.8
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2016-0293 |
Cross-site scripting (XSS) vulnerability in IBM BigFix Platform (formerly Tivoli Endpoint Manager) 9.x before 9.1.8 and 9.2.x before 9.2.8 allows remote attackers to inject arbitrary web script or HTML via a modified .beswrpt file. Published: August 31, 2016; 9:59:01 PM -0400 |
V3.0: 6.1 MEDIUM V2.0: 4.3 MEDIUM |
CVE-2016-0269 |
Cross-site scripting (XSS) vulnerability in IBM BigFix Platform 9.x before 9.1.8 and 9.2.x before 9.2.7 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL. Published: July 15, 2016; 2:59:01 PM -0400 |
V3.0: 5.4 MEDIUM V2.0: 3.5 LOW |