Skip to main content

Vendor/product archive

ibm / cloud_pak_for_data CVEs

Beta · best-effort

15 CVEs tagged to ibm / cloud_pak_for_data0 Critical, 2 High, 13 Medium, 0 Low, 0 Unrated.

CVE-2025-0719

Published Feb 26, 2025

IBM Cloud Pak for Data 4.0.0 through 4.8.5 and 5.0.0 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript cod…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-27545

Published Feb 29, 2024

IBM Watson CloudPak for Data Data Stores information disclosure 4.6.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 2489…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-27877

Published Jul 19, 2023

IBM Planning Analytics Cartridge for Cloud Pak for Data 4.0 connects to a CouchDB server. An attacker can exploit an insecure password policy to the CouchDB server and collect sen…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-26026

Published Jul 19, 2023

Planning Analytics Cartridge for Cloud Pak for Data 4.0 exposes sensitive information in logs which could lead an attacker to exploit this vulnerability to conduct further attacks…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-26023

Published Jul 19, 2023

Planning Analytics Cartridge for Cloud Pak for Data 4.0 exposes sensitive information in logs which could lead an attacker to exploit this vulnerability to conduct further attacks…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-38899

Published Sep 20, 2021

IBM Cloud Pak for Data 2.5 could allow a local user with special privileges to obtain highly sensitive information. IBM X-Force ID: 209575.

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1