Skip to main content

Vendor/product archive

ibm / filenet_p8_application_engine CVEs

Beta · best-effort

12 CVEs tagged to ibm / filenet_p8_application_engine0 Critical, 0 High, 10 Medium, 2 Low, 0 Unrated.

CVE-2010-3473

Published Sep 20, 2010

Open redirect vulnerability in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 allows remote attackers to redirect users to arb…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3472

Published Sep 20, 2010

Multiple cross-site scripting (XSS) vulnerabilities in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 allow remote attackers t…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3471

Published Sep 20, 2010

Session fixation vulnerability in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.7-P8AE-FP007 allows remote attackers to hijack…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3470

Published Sep 20, 2010

Multiple cross-site scripting (XSS) vulnerabilities in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 and 4.0.2.x before 4.0.2…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-5002

Published Sep 20, 2010

The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.1-P8AE-FP001 does not record Get Content Failure Audit events, which might allow…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-5001

Published Sep 20, 2010

The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.2-P8AE-FP002 grants a document's Creator-Owner full control over an annotation ob…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-5000

Published Sep 20, 2010

Multiple cross-site scripting (XSS) vulnerabilities in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.3-P8AE-FP003 allow remote…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-4999

Published Sep 20, 2010

Cross-site scripting (XSS) vulnerability in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-016 allows remote attackers to inject a…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-4998

Published Sep 20, 2010

The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-019 and 4.0.2.x before 4.0.2.7-P8AE-FP007, in certain FileTracker configurations, d…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-7261

Published Sep 20, 2010

The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-010 records DEBUG messages containing user credentials in the log4j.xml file, which…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2006-7242

Published Sep 20, 2010

The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-001 does not ensure that the AE Administrator role is present for Site Preferences…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-7241

Published Sep 20, 2010

The Image Viewer component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-002 removes a user from an ACL when the user is denied all permissions for an annotation,…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-12 of 12 CVEsPage 1 of 1