cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-4207,https://securityvulnerability.io/vulnerability/CVE-2020-4207,,"IBM Watson IoT Message Gateway 2.0.0.x, 5.0.0.0, 5.0.0.1, and 5.0.0.2 is vulnerable to a buffer overflow, caused by improper bounds checking when handling a failed HTTP request with specific content in the headers. By sending a specially crafted HTTP request, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause a denial of service. IBM X-Force ID: 174972.",IBM,"Wiotp Messagegateway,Iot Messagesight",9.8,CRITICAL,0.014600000344216824,false,,false,false,false,,,false,false,,2020-01-28T19:15:00.000Z,0 CVE-2016-0375,https://securityvulnerability.io/vulnerability/CVE-2016-0375,,"JMS Client in IBM MessageSight 1.1.x through 1.1.0.1, 1.2.x through 1.2.0.3, and 2.0.x through 2.0.0.0 allows remote authenticated users to obtain administrator privileges for executing arbitrary commands via unspecified vectors.",IBM,Messagesight,8.8,HIGH,0.0018599999602884054,false,,false,false,false,,,false,false,,2016-07-01T01:00:00.000Z,0 CVE-2014-0921,https://securityvulnerability.io/vulnerability/CVE-2014-0921,,The server in IBM MessageSight 1.x before 1.1.0.0-IBM-IMA-IT01015 allows remote attackers to cause a denial of service (daemon crash and message data loss) via malformed headers during a WebSockets connection upgrade.,IBM,"Messagesight Jms Client,Messagesight",,,0.00535999983549118,false,,false,false,false,,,false,false,,2014-04-15T23:13:00.000Z,0 CVE-2014-0922,https://securityvulnerability.io/vulnerability/CVE-2014-0922,,IBM MessageSight 1.x before 1.1.0.0-IBM-IMA-IT01015 allows remote attackers to cause a denial of service (resource consumption) via WebSockets MQ Telemetry Transport (MQTT) data.,IBM,"Messagesight Jms Client,Messagesight",,,0.00535999983549118,false,,false,false,false,,,false,false,,2014-04-15T23:13:00.000Z,0 CVE-2014-0924,https://securityvulnerability.io/vulnerability/CVE-2014-0924,,"IBM MessageSight 1.x before 1.1.0.0-IBM-IMA-IT01015 does not verify that all of the characters of a password are correct, which makes it easier for remote authenticated users to bypass intended access restrictions by leveraging knowledge of a password substring.",IBM,"Messagesight Jms Client,Messagesight",,,0.003269999986514449,false,,false,false,false,,,false,false,,2014-04-15T23:13:00.000Z,0 CVE-2014-0923,https://securityvulnerability.io/vulnerability/CVE-2014-0923,,IBM MessageSight 1.x before 1.1.0.0-IBM-IMA-IT01015 allows remote attackers to cause a denial of service (daemon restart) via crafted MQ Telemetry Transport (MQTT) authentication data.,IBM,"Messagesight Jms Client,Messagesight",,,0.00535999983549118,false,,false,false,false,,,false,false,,2014-04-15T23:13:00.000Z,0