CWE-650

Total CVEs
6
Vulnerabilities
Avg CVSS v3
6.6
Medium
Latest CVE
2024
Most Recent

Severity Distribution

Critical 0
0%
High 3
50%
Medium 3
50%
Low 0
0%

External References

All CVEs (6)

Page 1 of 1
CVSS:8.7(High)

IBM Security Verify Access 10.0.0 through 10.0.7 and IBM Application Gateway 20.01 through 24.03 could allow a remote attacker to obtain highly sensitive private information or cause a denial of servi...

CVSS:8.1(High)

IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user to bypass intended access restrictions and conduct resource modification.

CVSS:7.1(High)

IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user to bypass intended access restrictions and conduct resource modification.

CVSS:5.3(Medium)

Fields which are in 'read only' state in Bank Statement Draft in Manage Bank Statements application, could be modified by MERGE method. The property of an OData entity representing assumably immutable...

CVSS:5.3(Medium)

IBM PowerSC 1.3, 2.0, and 2.1 uses insecure HTTP methods which could allow a remote attacker to perform unauthorized file request modification. IBM X-Force ID: 275109.

CVSS:5.3(Medium)

Insecure method vulnerability in which allowed HTTP methods are disclosed. E.g., OPTIONS, DELETE, TRACE, and PUT