Skip to main content

Vendor/product archive

ibm / content_navigator CVEs

Beta · best-effort

40 CVEs tagged to ibm / content_navigator0 Critical, 5 High, 31 Medium, 4 Low, 0 Unrated.

CVE-2024-51475

Published May 16, 2025

IBM Content Navigator 3.0.11, 3.0.15, and 3.1.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the vi…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-40684

Published Oct 4, 2023

IBM Content Navigator 3.0.11, 3.0.13, and 3.0.14 with IBM Daeja ViewOne Virtual is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScrip…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-43581

Published Dec 7, 2022

IBM Content Navigator 3.0.0, 3.0.1, 3.0.2, 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.0.7, 3.0.8, 3.0.9, 3.0.10, 3.0.11, and 3.0.12 is vulnerable to missing authorization and could allow an au…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-29714

Published Aug 9, 2021

IBM Content Navigator 3.0.CD could allow a malicious user to cause a denial of service due to improper input validation. IBM X-Force ID: 200968.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-4760

Published Nov 10, 2020

IBM Content Navigator 3.0CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended func…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-4704

Published Nov 10, 2020

IBM Content Navigator 3.0CD is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intend…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-4309

Published Mar 24, 2020

IBM Content Navigator 3.0CD could disclose sensitive information to an unauthenticated user which could be used to aid in further attacks against the system. IBM X-Force ID: 17708…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-4253

Published Mar 24, 2020

IBM Content Navigator 3.0CD does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 175559.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-4679

Published Jan 28, 2020

IBM Content Navigator 3.0CD could allow an authenticated user to gain information about the hosting operating system and version that could be used in further attacks against the…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-4571

Published Sep 25, 2019

IBM Content Navigator 3.0CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended func…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-4263

Published Jul 11, 2019

IBM Content Navigator 3.0CD is vulnerable to local file inclusion, allowing an attacker to access a configuration file in the ICN server. IBM X-Force ID: 160015.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-4092

Published Apr 25, 2019

IBM Content Navigator 2.0.3 and 3.0CD could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-4033

Published Apr 25, 2019

IBM Content Navigator 2.0.3 and 3.0CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the int…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 40 CVEsPage 1 of 2