cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2011-0494,https://securityvulnerability.io/vulnerability/CVE-2011-0494,,"Directory traversal vulnerability in WebSEAL in IBM Tivoli Access Manager for e-business 5.1 before 5.1.0.39-TIV-AWS-IF0040, 6.0 before 6.0.0.25-TIV-AWS-IF0026, 6.1.0 before 6.1.0.5-TIV-AWS-IF0006, and 6.1.1 before 6.1.1-TIV-AWS-FP0001 has unspecified impact and attack vectors. NOTE: this might overlap CVE-2010-4622.",IBM,Tivoli Access Manager For E-business,,,0.0055599999614059925,false,,false,false,false,,,false,false,,2011-01-19T11:00:00.000Z,0 CVE-2010-4623,https://securityvulnerability.io/vulnerability/CVE-2010-4623,,WebSEAL in IBM Tivoli Access Manager for e-business 6.1.1 before 6.1.1-TIV-AWS-FP0001 allows remote authenticated users to cause a denial of service (worker thread consumption) via shift-reload actions.,IBM,Tivoli Access Manager For E-business,,,0.003160000080242753,false,,false,false,false,,,false,false,,2010-12-30T18:00:00.000Z,0 CVE-2010-4622,https://securityvulnerability.io/vulnerability/CVE-2010-4622,,Directory traversal vulnerability in WebSEAL in IBM Tivoli Access Manager for e-business 6.1.1 before 6.1.1-TIV-AWS-FP0001 on AIX allows remote attackers to read arbitrary files via a %uff0e%uff0e (encoded dot dot) in a URI.,IBM,Tivoli Access Manager For E-business,,,0.007189999800175428,false,,false,false,false,,,false,false,,2010-12-30T18:00:00.000Z,0 CVE-2010-4120,https://securityvulnerability.io/vulnerability/CVE-2010-4120,,"Multiple cross-site scripting (XSS) vulnerabilities in the TAM console in IBM Tivoli Access Manager for e-business 6.1.0 before 6.1.0-TIV-TAM-FP0006 allow remote attackers to inject arbitrary web script or HTML via (1) the parm1 parameter to ivt/ivtserver, or the method parameter to (2) acl, (3) domain, (4) group, (5) gso, (6) gsogroup, (7) os, (8) pop, (9) rule, (10) user, or (11) webseal in ibm/wpm/.",IBM,Tivoli Access Manager For E-business,,,0.10388000309467316,false,,false,false,false,,,false,false,,2010-10-28T20:00:00.000Z,0 CVE-2008-5257,https://securityvulnerability.io/vulnerability/CVE-2008-5257,,"webseald in WebSEAL 6.0.0.17 in IBM Tivoli Access Manager for e-business allows remote attackers to cause a denial of service (crash or hang) via HTTP requests, as demonstrated by a McAfee vulnerability scan.",IBM,Tivoli Access Manager For E-business,,,0.018629999831318855,false,,false,false,false,,,false,false,,2008-11-27T00:00:00.000Z,0 CVE-2006-0513,https://securityvulnerability.io/vulnerability/CVE-2006-0513,,Directory traversal vulnerability in pkmslogout in Tivoli Web Server Plug-in 5.1.0.10 in Tivoli Access Manager (TAM) 5.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.,IBM,Tivoli Access Manager For E-business,,,0.01083999965339899,false,,false,false,false,,,false,false,,2006-02-06T23:00:00.000Z,0 CVE-2004-2558,https://securityvulnerability.io/vulnerability/CVE-2004-2558,,"Unspecified vulnerability in IBM Tivoli SecureWay Policy Director 3.8, Access Manager for e-business 3.9 to 5.1, Access Manager Identity Manager Solution 5.1, Configuration Manager 4.2, Configuration Manager for Automated Teller Machines 2.1.0, and IBM WebSphere Everyplace Server, Service Provider Offering for Multi-platforms 2.1.3 to 2.15 allow remote attackers to hijack sessions of authenticated users via unknown attack vectors involving certain cookies, aka ""Potential Credential Impersonation Attack.""",IBM,"Websphere Everyplace Server,Tivoli Configuration Manager,Tivoli Access Manager For E-business,Tivoli Secureway Policy Director,Tivoli Configuration Manager For Atm,Tivoli Access Manager Identity Manager Solution",,,0.009379999712109566,false,,false,false,false,,,false,false,,2004-12-31T05:00:00.000Z,0