Vulnerabilities
Vulnerable Software
Ibm:  >> I  >> 7.5  Security Vulnerabilities
IBM Navigator for i 7.3, 7.4 and 7.5 could allow an authenticated user to access IBM Navigator for i log files they are authorized to but not while using this interface. The remote authenticated user can bypass the interface checks and download log files by modifying servlet filter. IBM X-Force ID: 239301.
CVSS Score
4.3
EPSS Score
0.0
Published
2022-12-22
IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 230516.
CVSS Score
5.4
EPSS Score
0.002
Published
2022-07-13
IBM i 7.3, 7.4, and 7.5 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 226941.
CVSS Score
6.3
EPSS Score
0.002
Published
2022-05-24


Contact Us

Shodan ® - All rights reserved