cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2014-6121,https://securityvulnerability.io/vulnerability/CVE-2014-6121,,"Cross-site scripting (XSS) vulnerability in IBM Security AppScan Enterprise 8.5 before 8.5 IFix 002, 8.6 before 8.6 IFix 004, 8.7 before 8.7 IFix 004, 8.8 before 8.8 iFix 003, 9.0 before 9.0.0.1 iFix 003, and 9.0.1 before 9.0.1 iFix 001 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.",IBM,"Security Appscan,Security Appscan Source",,,0.000859999970998615,false,,false,false,false,,,false,false,,2014-12-23T02:00:00.000Z,0 CVE-2014-6119,https://securityvulnerability.io/vulnerability/CVE-2014-6119,,"IBM Security AppScan Enterprise 8.5 before 8.5 IFix 002, 8.6 before 8.6 IFix 004, 8.7 before 8.7 IFix 004, 8.8 before 8.8 iFix 003, 9.0 before 9.0.0.1 iFix 003, and 9.0.1 before 9.0.1 iFix 001 allows remote attackers to execute arbitrary code via a crafted executable file in an archive.",IBM,"Security Appscan,Security Appscan Source",,,0.016610000282526016,false,,false,false,false,,,false,false,,2014-12-23T02:00:00.000Z,0 CVE-2014-6122,https://securityvulnerability.io/vulnerability/CVE-2014-6122,,"IBM Security AppScan Enterprise 8.5 before 8.5 IFix 002, 8.6 before 8.6 IFix 004, 8.7 before 8.7 IFix 004, 8.8 before 8.8 iFix 003, 9.0 before 9.0.0.1 iFix 003, and 9.0.1 before 9.0.1 iFix 001 allows remote authenticated users to write to arbitrary folders, and consequently execute arbitrary commands, via a modified argument.",IBM,"Security Appscan,Security Appscan Source",,,0.0033199999015778303,false,,false,false,false,,,false,false,,2014-12-23T02:00:00.000Z,0 CVE-2014-6135,https://securityvulnerability.io/vulnerability/CVE-2014-6135,,"IBM Security AppScan Enterprise 8.5 before 8.5 IFix 002, 8.6 before 8.6 IFix 004, 8.7 before 8.7 IFix 004, 8.8 before 8.8 iFix 003, 9.0 before 9.0.0.1 iFix 003, and 9.0.1 before 9.0.1 iFix 001 allows remote attackers to conduct clickjacking attacks via unspecified vectors.",IBM,"Security Appscan,Security Appscan Source",,,0.002739999908953905,false,,false,false,false,,,false,false,,2014-12-23T02:00:00.000Z,0 CVE-2014-4812,https://securityvulnerability.io/vulnerability/CVE-2014-4812,,"The installer in IBM Security AppScan Source 8.x and 9.x through 9.0.1 has an open network port for a debug service, which allows remote attackers to obtain sensitive information by connecting to this port.",IBM,Security Appscan Source,,,0.0023499999660998583,false,,false,false,false,,,false,false,,2014-10-26T18:00:00.000Z,0 CVE-2014-3072,https://securityvulnerability.io/vulnerability/CVE-2014-3072,,"Unspecified vulnerability in the Automation Server in IBM Security AppScan Source 8 through 8.0.0.2, 8.5 through 8.5.0.1, 8.6 through 8.6.0.2, 8.7 through 8.7.0.1, 8.8, and 9.0 through 9.0.0.1 allows local users to gain privileges by executing a crafted service.",IBM,Security Appscan Source,,,0.0004199999966658652,false,,false,false,false,,,false,false,,2014-08-12T14:00:00.000Z,0 CVE-2014-0936,https://securityvulnerability.io/vulnerability/CVE-2014-0936,,"IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by sniffing the network.",IBM,Security Appscan Source,,,0.002240000059828162,false,,false,false,false,,,false,false,,2014-06-08T23:55:00.000Z,0 CVE-2012-2159,https://securityvulnerability.io/vulnerability/CVE-2012-2159,,"Open redirect vulnerability in IBM Eclipse Help System (IEHS), as used in IBM Security AppScan Source 7.x and 8.x before 8.6 and IBM SPSS Data Collection Developer Library 6.0 and 6.0.1, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.",IBM,Security Appscan Source,,,0.003220000071451068,false,,false,false,false,,,false,false,,2012-06-20T10:00:00.000Z,0 CVE-2012-2161,https://securityvulnerability.io/vulnerability/CVE-2012-2161,,"Cross-site scripting (XSS) vulnerability in deferredView.jsp in IBM Eclipse Help System (IEHS), as used in IBM Security AppScan Source 7.x and 8.x before 8.6 and IBM SPSS Data Collection Developer Library 6.0 and 6.0.1, allows remote attackers to inject arbitrary web script or HTML via a crafted URL.",IBM,Security Appscan Source,,,0.002520000096410513,false,,false,false,false,,,false,false,,2012-06-20T10:00:00.000Z,0 CVE-2012-2173,https://securityvulnerability.io/vulnerability/CVE-2012-2173,,"The ODBC driver in IBM Security AppScan Source 7.x and 8.x before 8.6 sends an SHA-1 hash of the connection password during connections to a solidDB database, which allows remote attackers to obtain sensitive information by sniffing the network.",IBM,Security Appscan Source,,,0.00279999990016222,false,,false,false,false,,,false,false,,2012-06-20T10:00:00.000Z,0