cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-35642,https://securityvulnerability.io/vulnerability/CVE-2022-35642,Cross-Site Scripting Vulnerability in IBM InfoSphere Information Server,"IBM InfoSphere Information Server version 11.7 is affected by a cross-site scripting vulnerability that enables attackers to inject arbitrary JavaScript code into the Web UI. This exploitation can modify the intended functionality of the application, potentially leading to the disclosure of user credentials during a trusted session. Such vulnerabilities pose significant risks to web application security and user data integrity.",IBM,IBM Infosphere Information Server,5.4,MEDIUM,0.0005000000237487257,false,,false,false,false,,,false,false,,2022-11-03T00:00:00.000Z,0 CVE-2022-22425,https://securityvulnerability.io/vulnerability/CVE-2022-22425,CSV Injection Vulnerability in IBM InfoSphere Information Server,"IBM InfoSphere Information Server 11.7 may be susceptible to a CSV injection vulnerability. An attacker could exploit this flaw by sending maliciously crafted CSV file contents, potentially allowing the execution of arbitrary commands on the target system due to inadequate validation. This issue raises significant security concerns, as it highlights the importance of proper input sanitization in data handling.",IBM,IBM Infosphere Information Server,9.8,CRITICAL,0.002099999925121665,false,,false,false,false,,,false,false,,2022-11-03T00:00:00.000Z,0 CVE-2022-22442,https://securityvulnerability.io/vulnerability/CVE-2022-22442,Improper Access Control in IBM InfoSphere Information Server,"IBM InfoSphere Information Server 11.7 is subject to a security vulnerability that enables authenticated users to gain unauthorized access to sensitive information. This occurs due to deficiencies in access control mechanisms, allowing individuals with standard privileges to access data intended solely for higher-privileged users. This flaw poses a risk to data confidentiality and integrity, necessitating prompt remediation.",IBM,IBM Infosphere Information Server,6.5,MEDIUM,0.0006000000284984708,false,,false,false,false,,,false,false,,2022-11-03T00:00:00.000Z,0 CVE-2022-30615,https://securityvulnerability.io/vulnerability/CVE-2022-30615,Cross-Site Scripting Vulnerability in IBM InfoSphere Information Server 11.7,"IBM InfoSphere Information Server 11.7 contains a cross-site scripting vulnerability that may permit the injection of arbitrary JavaScript code into the Web UI. This allows attackers to execute malicious scripts under the context of a trusted user session, potentially leading to the unauthorized disclosure of sensitive information, such as user credentials. Organizations should apply the necessary updates and security measures to safeguard against this vulnerability.",IBM,IBM Infosphere Information Server,5.4,MEDIUM,0.0005000000237487257,false,,false,false,false,,,false,false,,2022-11-03T00:00:00.000Z,0 CVE-2022-35717,https://securityvulnerability.io/vulnerability/CVE-2022-35717,Arbitrary Command Execution in IBM InfoSphere Information Server,"IBM InfoSphere Information Server 11.7 has a vulnerability that allows a locally authenticated attacker to execute arbitrary commands on the system by sending specially crafted requests. This security flaw poses a significant risk to the integrity and confidentiality of the system, potentially allowing unauthorized access to sensitive operations.",IBM,IBM Infosphere Information Server,7.8,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-11-03T00:00:00.000Z,0 CVE-2022-40235,https://securityvulnerability.io/vulnerability/CVE-2022-40235,Denial of Service Vulnerability in IBM InfoSphere Information Server 11.7,"IBM InfoSphere Information Server 11.7 contains a vulnerability that could be exploited to create a denial of service condition. This issue arises from improper input validation, allowing users to disrupt job execution. If exploited, this vulnerability could result in significant downtime and hinder the data processing capabilities of the application. Organizations using this product should take immediate action to mitigate the risks posed by this vulnerability.",IBM,IBM Infosphere Information Server,6.5,MEDIUM,0.0007200000109151006,false,,false,false,false,,,false,false,,2022-11-03T00:00:00.000Z,0 CVE-2022-40747,https://securityvulnerability.io/vulnerability/CVE-2022-40747,XML External Entity Injection Vulnerability in IBM InfoSphere Information Server,"IBM InfoSphere Information Server 11.7 is susceptible to an XML External Entity Injection (XXE) attack while processing XML data. This vulnerability allows remote attackers to exploit the system, potentially leading to the unauthorized exposure of sensitive information and increased consumption of memory resources. The exploitation of this vulnerability poses a significant risk to data integrity and security.",IBM,IBM Infosphere Information Server,9.1,CRITICAL,0.0024900001008063555,false,,false,false,false,,,false,false,,2022-11-03T00:00:00.000Z,0 CVE-2022-30608,https://securityvulnerability.io/vulnerability/CVE-2022-30608,Cross-Site Request Forgery Vulnerability in IBM InfoSphere Information Server,"IBM InfoSphere Information Server 11.7 exhibits a vulnerability that allows for cross-site request forgery (CSRF). This flaw could permit an attacker to execute unauthorized actions on behalf of an authenticated user, undermining the integrity of the server. Malicious requests can be made without the user's consent, which poses significant security risks for data integrity and user trust.",IBM,IBM Infosphere Information Server,8.8,HIGH,0.000750000006519258,false,,false,false,false,,,false,false,,2022-11-03T00:00:00.000Z,0 CVE-2013-0507,https://securityvulnerability.io/vulnerability/CVE-2013-0507,,"IBM InfoSphere Information Server 8.1, 8.5, 8.7, 9.1 has a Session Fixation Vulnerability",IBM,IBM Infosphere Information Server,8.1,HIGH,0.0015800000401213765,false,,false,false,false,,,false,false,,2020-02-05T15:26:26.000Z,0