Filtered by vendor Ibm Subscriptions
Filtered by product Common Licensing Subscriptions
Total 5 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-50306 1 Ibm 1 Common Licensing 2025-02-12 4 Medium
IBM Common Licensing 9.0 could allow a local user to enumerate usernames due to an observable response discrepancy. IBM X-Force ID: 273337.
CVE-2023-50945 1 Ibm 1 Common Licensing 2025-01-27 6.2 Medium
IBM Common Licensing 9.0 stores user credentials in plain clear text which can be read by a local user.
CVE-2023-50946 1 Ibm 1 Common Licensing 2025-01-27 6.5 Medium
IBM Common Licensing 9.0 could allow an authenticated user to modify a configuration file that they should not have access to due to a broken authorization mechanism.
CVE-2024-41774 1 Ibm 1 Common Licensing 2024-08-24 4.8 Medium
IBM Common Licensing 9.0 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 350348.
CVE-2024-40697 1 Ibm 1 Common Licensing 2024-08-22 7.5 High
IBM Common Licensing 9.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 297895.