cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-38389,https://securityvulnerability.io/vulnerability/CVE-2022-38389,IBM Tivoli Workload Scheduler XML external entity injection,"IBM Tivoli Workload Scheduler versions 9.4, 9.5, and 10.1 are susceptible to an XML External Entity Injection (XXE) attack that occurs when the software processes XML data. An attacker could exploit this vulnerability remotely, allowing them to expose sensitive information or deplete memory resources, leading to potential service disruption.",IBM,Tivoli Workload Scheduler,7.1,HIGH,0.001550000044517219,false,,false,false,false,,,false,false,,2023-02-03T00:15:00.000Z,0 CVE-2022-22486,https://securityvulnerability.io/vulnerability/CVE-2022-22486,IBM Tivoli Workload Scheduler XML external entity injection,"IBM Tivoli Workload Scheduler versions 9.4, 9.5, and 10.1 are susceptible to an XML External Entity Injection (XXE) attack, which can be exploited by a remote attacker. By sending specially crafted XML data, an attacker may gain access to sensitive information or exhaust system memory resources, leading to potential service disruptions or data breaches. This vulnerability necessitates immediate attention to mitigate risks associated with unauthorized access to data and denial of service.",IBM,Tivoli Workload Scheduler,10,CRITICAL,0.001550000044517219,false,,false,false,false,,,false,false,,2023-02-02T17:45:36.250Z,0 CVE-2017-1716,https://securityvulnerability.io/vulnerability/CVE-2017-1716,,"IBM Tivoli Workload Scheduler 8.6.0, 9.1.0, and 9.2.0 could disclose sensitive information to a local attacker due to improper permission settings. IBM X-Force ID: 134638.",IBM,Tivoli Workload Scheduler,3.3,LOW,0.0004199999966658652,false,,false,false,false,,,false,false,,2017-12-13T18:29:00.000Z,0