Skip to main content

Vendor/product archive

ibm / sterling_partner_engagement_manager CVEs

Beta · best-effort

18 CVEs tagged to ibm / sterling_partner_engagement_manager0 Critical, 3 High, 13 Medium, 2 Low, 0 Unrated.

CVE-2025-14811

Published Mar 13, 2026

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow an attacker to obtain sensitive information from the query string of an HTT…

CVSS 3.1 · Low
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2022-35640

Published Jul 16, 2024

IBM Sterling Partner Engagement Manager 6.2.2 could allow a local attacker to obtain sensitive information when a detailed technical error message is returned. IBM X-Force ID: 230…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-38722

Published Oct 23, 2023

IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.2 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-34334

Published Oct 10, 2022

IBM Sterling Partner Engagement Manager 2.0 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-34348

Published Sep 23, 2022

IBM Sterling Partner Engagement Manager 6.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerabi…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-18 of 18 CVEsPage 1 of 1