{"resultsPerPage":10,"startIndex":0,"totalResults":229,"format":"NVD_CVE","version":"2.0","timestamp":"2026-07-21T04:51:31.492","vulnerabilities":[{"cve":{"id":"CVE-2003-0733","sourceIdentifier":"cve@mitre.org","published":"2003-10-20T04:00:00.000","lastModified":"2026-06-16T22:02:43.900","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple cross-site scripting (XSS) vulnerabilities in WebLogic Integration 7.0 and 2.0, Liquid Data 1.1, and WebLogic Server and Express 5.1 through 7.0, allow remote attackers to execute arbitrary web script and steal authentication credentials via (1) a forward instruction to the Servlet container or (2) other vulnerabilities in the WebLogic Server console application."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:P","baseScore":6.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bea:liquid_data:1.1:*:*:*:*:*:*:*","matchCriteriaId":"33A4F5FB-69A0-49D0-81D1-D831C3E7BE1F"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_integration:2.0:*:*:*:*:*:*:*","matchCriteriaId":"075BB751-A3EF-40DB-8D9C-9F7FB49061C2"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_integration:7.0:*:*:*:*:*:*:*","matchCriteriaId":"0AB49671-9D20-44B1-93DE-261AD900679E"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:*:*:*:*:*:*","matchCriteriaId":"CCD5D4AD-0BA3-42F7-852F-524488D74A96"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:7.0:*:express:*:*:*:*:*","matchCriteriaId":"FBDF3AC0-0680-4EEE-898C-47D194667BE2"}]}]}],"references":[{"url":"http://dev2dev.bea.com/resourcelibrary/advisoriesnotifications/SA_BEA03_36.00.jsp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/8357","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://dev2dev.bea.com/resourcelibrary/advisoriesnotifications/SA_BEA03_36.00.jsp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/8357","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2010-1612","sourceIdentifier":"cve@mitre.org","published":"2010-04-29T19:30:00.620","lastModified":"2026-06-16T23:18:42.480","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The IBM WebSphere DataPower XML Accelerator XA35, Low Latency Appliance XM70, Integration Appliance XI50, B2B Appliance XB60, and XML Security Gateway XS40 SOA Appliances before 3.8.0.0, when a QLOGIC Ethernet interface is used, allow remote attackers to cause a denial of service (interface outage) via malformed ICMP packets to the 0.0.0.0 destination IP address."},{"lang":"es","value":"The IBM WebSphere DataPower XML Accelerator XA35, Low Latency Appliance XM70, Integration Appliance XI50, B2B Appliance XB60, y XML Security Gateway XS40 SOA Appliances anterior a v3.8.0.0, cuando una interfaz Ethernet QLOGIC se utiliza, permite a atacantes remotos provocar una denegación de servicio (corte de interfaz) a través de paquetes ICMP malformados a la dirección IP de destino 0.0.0.0."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:*:*:*:*:*:*:*:*","versionEndIncluding":"3.7.3.10","matchCriteriaId":"F9D020C6-A16A-40EB-92DC-1A7EE2A6EBCB"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.2:*:*:*:*:*:*:*","matchCriteriaId":"586FFFE7-29D5-4C3E-AA69-F7F62B63BFC4"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3:*:*:*:*:*:*:*","matchCriteriaId":"14B6DDB5-5327-48BC-91DD-1251BF0DBEEB"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.1:*:*:*:*:*:*:*","matchCriteriaId":"13009F00-27C1-47BA-A36E-9CEE38C9A904"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.2:*:*:*:*:*:*:*","matchCriteriaId":"942A77B3-BB46-4279-B607-FD8D5BA40190"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.3:*:*:*:*:*:*:*","matchCriteriaId":"97B367B4-D39A-41D0-B964-DDF6B03B1C91"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.4:*:*:*:*:*:*:*","matchCriteriaId":"36D080A6-1AA0-47A4-B3A6-671E81CB8360"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.5:*:*:*:*:*:*:*","matchCriteriaId":"A2D77BFB-8ADC-4C82-9366-A74EA5BC0DF9"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.6:*:*:*:*:*:*:*","matchCriteriaId":"77EC7DA7-33E8-4C6E-AE37-8BB12577BBD2"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.7:*:*:*:*:*:*:*","matchCriteriaId":"CCEF4066-BCA0-4821-882A-8EFFC7EFF915"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.8:*:*:*:*:*:*:*","matchCriteriaId":"563937B5-1015-4598-8A64-9F2A1DD996C1"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.9:*:*:*:*:*:*:*","matchCriteriaId":"D719A822-C427-4501-B0DB-29D6B6815D03"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.8.0.0:*:*:*:*:*:*:*","matchCriteriaId":"2D559BB4-B366-4309-A58A-F27E1A9EDB76"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.8.0.1:*:*:*:*:*:*:*","matchCriteriaId":"14861F10-5CE7-43D0-88FE-420C49C87056"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.8.0.2:*:*:*:*:*:*:*","matchCriteriaId":"F718D1EF-F0D5-41F9-A527-0C85861CA49E"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.8.0.3:*:*:*:*:*:*:*","matchCriteriaId":"195E5997-4A74-494E-9C46-096DD03EAD04"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.8.0.4:*:*:*:*:*:*:*","matchCriteriaId":"5B32DCD5-1FEE-4AE7-8302-AB406FD865C2"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qlogic:ethernet:*:*:*:*:*:*:*:*","matchCriteriaId":"3EC4491C-6FA3-4732-847E-3239449EF85B"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:*:*:*:*:*:*:*:*","versionEndIncluding":"3.7.3.10","matchCriteriaId":"A37A110D-E13C-4182-8F80-D52AC0E769DB"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.2:*:*:*:*:*:*:*","matchCriteriaId":"DD055D63-C65D-4D6A-82E2-0246567DF02F"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3:*:*:*:*:*:*:*","matchCriteriaId":"75E6618C-1AD8-42F9-99CB-87F7BDBAD54F"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.1:*:*:*:*:*:*:*","matchCriteriaId":"681C6A11-CE37-4B89-A07A-C8F6C67DDA71"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.2:*:*:*:*:*:*:*","matchCriteriaId":"F22D235E-3D0A-46C2-BE1E-C1D8F1DB4B2E"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.3:*:*:*:*:*:*:*","matchCriteriaId":"A8D0BD9B-9170-4F3C-B197-FE5FA5F3041D"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.4:*:*:*:*:*:*:*","matchCriteriaId":"6DA8AF33-8906-43F8-A472-5D30CEFB5CC0"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.5:*:*:*:*:*:*:*","matchCriteriaId":"ABF36E51-5F5A-4A7B-B913-C9720E49155F"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.6:*:*:*:*:*:*:*","matchCriteriaId":"3C73AA84-A6C8-4086-8497-EB6FB9D186C5"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.7:*:*:*:*:*:*:*","matchCriteriaId":"4BD8CBE8-D225-496B-98D2-96B70309FB34"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.8:*:*:*:*:*:*:*","matchCriteriaId":"8C29BCCC-C702-4B91-9FB5-E3DF11A1571F"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.9:*:*:*:*:*:*:*","matchCriteriaId":"01146025-2F1C-41F6-AEFA-813CE992BCC7"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.8.0.0:*:*:*:*:*:*:*","matchCriteriaId":"C4695EE4-2350-47F0-AC2A-220A4BAA83C5"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.8.0.1:*:*:*:*:*:*:*","matchCriteriaId":"0C000536-F165-413A-80B7-D24ED990A08D"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.8.0.2:*:*:*:*:*:*:*","matchCriteriaId":"C3F4E47E-D879-461C-9998-10EE7EC7BB23"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.8.0.3:*:*:*:*:*:*:*","matchCriteriaId":"61AE57B4-C705-4A7C-AF30-5C05836166A7"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.8.0.4:*:*:*:*:*:*:*","matchCriteriaId":"1BA2D278-2DCF-4242-BE4D-B1293D2EC2DB"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qlogic:ethernet:*:*:*:*:*:*:*:*","matchCriteriaId":"3EC4491C-6FA3-4732-847E-3239449EF85B"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:*:*:*:*:*:*:*:*","versionEndIncluding":"3.7.3.10","matchCriteriaId":"95BD770B-1530-466D-B1A0-EA374E99808C"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.2:*:*:*:*:*:*:*","matchCriteriaId":"58480E75-BE32-4C70-814C-344E63228552"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3:*:*:*:*:*:*:*","matchCriteriaId":"56B6818D-2C1B-4524-8609-7A770AA90CE4"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.1:*:*:*:*:*:*:*","matchCriteriaId":"B70FC3A5-516F-438F-92C2-E670A79C2A36"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.2:*:*:*:*:*:*:*","matchCriteriaId":"8B7297F9-99AF-46C8-91F4-81673D1F26F6"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.3:*:*:*:*:*:*:*","matchCriteriaId":"6192228F-80D2-43D4-88C6-B9B4A8AC456C"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.4:*:*:*:*:*:*:*","matchCriteriaId":"4B82CBA4-BA5E-451E-8747-9277A319930A"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.5:*:*:*:*:*:*:*","matchCriteriaId":"9E14B2BC-8660-4995-8DB9-6207EC5E69CB"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.6:*:*:*:*:*:*:*","matchCriteriaId":"1B14B7EE-6825-4887-BF6D-F0FCCE0BCBC9"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.7:*:*:*:*:*:*:*","matchCriteriaId":"C6789E09-446B-412B-8DED-6CA407C8F0DB"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.8:*:*:*:*:*:*:*","matchCriteriaId":"9B69A639-6A68-4FD3-9E66-374F58E3754C"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.9:*:*:*:*:*:*:*","matchCriteriaId":"543A42EA-9869-463A-B7EF-BEFCED09E991"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.8.0.0:*:*:*:*:*:*:*","matchCriteriaId":"29291135-6054-4F67-A42B-805034EBD0AF"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.8.0.1:*:*:*:*:*:*:*","matchCriteriaId":"B5D5D878-F62C-4C7D-81F2-9F28835B96C8"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.8.0.2:*:*:*:*:*:*:*","matchCriteriaId":"8A05EE61-6AD2-456C-8542-7E1D8855193E"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.8.0.4:*:*:*:*:*:*:*","matchCriteriaId":"176233A5-3E15-4107-986F-05734358EBD3"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.8.03:*:*:*:*:*:*:*","matchCriteriaId":"2C0D5650-87EF-47E7-B1E9-B72147A9DBED"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qlogic:ethernet:*:*:*:*:*:*:*:*","matchCriteriaId":"3EC4491C-6FA3-4732-847E-3239449EF85B"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:*:*:*:*:*:*:*:*","versionEndIncluding":"3.7.3.10","matchCriteriaId":"5474C6C7-533D-4F4B-9424-F4C9DEFB15BF"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.1:*:*:*:*:*:*:*","matchCriteriaId":"AD2FD85B-E56C-40A6-AFA9-F2BE075336C7"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.2:*:*:*:*:*:*:*","matchCriteriaId":"60C1D2CA-93A3-49BB-AB9A-D6C2018004C8"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.3:*:*:*:*:*:*:*","matchCriteriaId":"9A119109-39B2-498E-B9E7-3F839D223AA3"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.4:*:*:*:*:*:*:*","matchCriteriaId":"4847085D-19C9-4245-A1A1-925CA3F1FFF0"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.5:*:*:*:*:*:*:*","matchCriteriaId":"9FA26B80-BA2E-4FF0-9958-EA9A4A4671CF"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.6:*:*:*:*:*:*:*","matchCriteriaId":"12D65EC4-F1EE-412C-9977-48A2DE5C5C85"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.7:*:*:*:*:*:*:*","matchCriteriaId":"EC94C6DF-671E-450C-B95A-757A073D2BD2"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.8:*:*:*:*:*:*:*","matchCriteriaId":"4E2A0248-2923-47CF-ADC0-42ECA78733FC"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.9:*:*:*:*:*:*:*","matchCriteriaId":"C833868A-7D98-4501-94CC-0D6A89E11E08"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.8.0.0:*:*:*:*:*:*:*","matchCriteriaId":"D90B96D2-56DB-4CA4-AB48-6A152FF41B32"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.8.0.1:*:*:*:*:*:*:*","matchCriteriaId":"AD76A782-90F7-4C27-AC67-D675DDF460E8"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.8.0.2:*:*:*:*:*:*:*","matchCriteriaId":"F22CD857-8AAA-4EAC-8118-242C2F124491"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.8.0.3:*:*:*:*:*:*:*","matchCriteriaId":"291A7299-04D0-449F-9CF4-1E1E967DB24C"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.8.0.4:*:*:*:*:*:*:*","matchCriteriaId":"D750C641-BE66-4F36-8D6B-7D9399EF379C"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qlogic:ethernet:*:*:*:*:*:*:*:*","matchCriteriaId":"3EC4491C-6FA3-4732-847E-3239449EF85B"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:*:*:*:*:*:*:*:*","versionEndIncluding":"3.7.3.10","matchCriteriaId":"B6F9DAAA-01F3-454D-B580-B0D0C9977024"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.1:*:*:*:*:*:*:*","matchCriteriaId":"BB499903-2226-4554-B3CF-F78C1298A6D8"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.2:*:*:*:*:*:*:*","matchCriteriaId":"98CA6A06-845C-4458-8E12-FB5C122DDBEE"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.3:*:*:*:*:*:*:*","matchCriteriaId":"2DEEF832-65CD-4B77-A2A8-DB6F40C72DFF"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.4:*:*:*:*:*:*:*","matchCriteriaId":"8ED3BF71-31B7-4659-93DD-5313B72D7F96"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.5:*:*:*:*:*:*:*","matchCriteriaId":"14A832B7-E83C-4E36-B915-1898F543A73D"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.6:*:*:*:*:*:*:*","matchCriteriaId":"52F9174B-611E-462F-8E44-77A7E647D7DD"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.7:*:*:*:*:*:*:*","matchCriteriaId":"1EE1D778-B114-402A-BBA3-20E28C6ACE87"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.8:*:*:*:*:*:*:*","matchCriteriaId":"5198124F-AECE-449A-9D34-3FED4CC7CE78"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.9:*:*:*:*:*:*:*","matchCriteriaId":"F5C9660B-EF07-448E-8052-DBEA172B38AC"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.8.0.0:*:*:*:*:*:*:*","matchCriteriaId":"7D06F1DC-9099-4679-A271-25DEAE349706"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.8.0.1:*:*:*:*:*:*:*","matchCriteriaId":"9E2CFD25-9FEB-4DA2-A887-B7D32D06A43C"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.8.0.2:*:*:*:*:*:*:*","matchCriteriaId":"85E0AA44-04A8-4EEC-9B7B-31CA4AF36B8B"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.8.0.3:*:*:*:*:*:*:*","matchCriteriaId":"4D9686B7-3FBD-4CF8-B00B-9CB31E7735B3"},{"vulnerable":true,"criteria":"cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.8.0.4:*:*:*:*:*:*:*","matchCriteriaId":"09D055B1-5201-4F71-88B2-DD22DBF434AF"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qlogic:ethernet:*:*:*:*:*:*:*:*","matchCriteriaId":"3EC4491C-6FA3-4732-847E-3239449EF85B"}]}]}],"references":[{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg1IC61364","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg24024770","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg24024771","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg24024772","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg24024773","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg24024774","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/archive/1/509163/100/0/threaded","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/37952","source":"cve@mitre.org"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg1IC61364","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg24024770","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg24024771","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg24024772","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg24024773","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg24024774","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/archive/1/509163/100/0/threaded","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/37952","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2011-5066","sourceIdentifier":"cve@mitre.org","published":"2012-01-15T03:55:13.030","lastModified":"2026-06-16T23:35:52.943","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SibRaRecoverableSiXaResource class in the Default Messaging Component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.41 does not properly handle a Service Integration Bus (SIB) dump operation involving the First Failure Data Capture (FFDC) introspection code, which allows local users to obtain sensitive information by reading the FFDC log file."},{"lang":"es","value":"La clase SibRaRecoverableSiXaResource en el Default Messaging Component en IBM WebSphere Application Server (WAS) v6.1 anterior a v6.1.0.41 no controla correctamente la operación de volcado del Service Integration Bus (SIB) que comprende el código de introspección First Failure Data Capture (FFDC, que permite a usuarios locales obtener información sensible mediante la lectura del archivo de registro FFDC."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1:*:*:*:*:*:*:*","matchCriteriaId":"7B9CDD56-921C-4FAF-87E2-14B91EC1A93D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0:*:*:*:*:*:*:*","matchCriteriaId":"95255265-6D69-46D3-9FFA-8EDB1734375C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.0:*:*:*:*:*:*:*","matchCriteriaId":"2E4191D3-64AB-482C-9DEF-DD04C4C942CE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"5FC6EB31-9707-408B-8BF5-66BD23441A75"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"9B73E052-AF4F-4543-AA03-F5B1FA976EA8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.3:*:*:*:*:*:*:*","matchCriteriaId":"23171B81-C991-467A-95A4-EDDAC59C37BC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.5:*:*:*:*:*:*:*","matchCriteriaId":"2586C584-3258-414B-AB28-1EBA0DBD0B83"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.7:*:*:*:*:*:*:*","matchCriteriaId":"BCA175EA-EDC6-4228-8E28-E9BBC981E60A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.9:*:*:*:*:*:*:*","matchCriteriaId":"C6A4EC9D-98C2-40B0-BA40-4838FE8D1FF7"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.11:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BB33-4E78-4123-8093-EBEE2F2B5598"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.12:*:*:*:*:*:*:*","matchCriteriaId":"E3F4B8EA-9299-42C1-AAFB-831701ED2FA2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.15:*:*:*:*:*:*:*","matchCriteriaId":"13CA9A59-DFE4-4566-8719-E6FA4720F06A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.17:*:*:*:*:*:*:*","matchCriteriaId":"A89DD1BF-4AB0-480D-9856-B1BEA73A4AAD"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.19:*:*:*:*:*:*:*","matchCriteriaId":"49E119EF-B6A5-4B6C-B199-C64F62CA7CB2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.21:*:*:*:*:*:*:*","matchCriteriaId":"C9C8FA3D-9162-4D9B-8250-FAC93ED77A2D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.23:*:*:*:*:*:*:*","matchCriteriaId":"E06DE5D4-D3A5-4783-ACE0-A80808DB09C9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.25:*:*:*:*:*:*:*","matchCriteriaId":"ABBABA44-D18E-4329-9C2B-90828DAD468B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.27:*:*:*:*:*:*:*","matchCriteriaId":"BDBB08AC-52AD-4D5A-9E76-AFB283D5FE5C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.29:*:*:*:*:*:*:*","matchCriteriaId":"335D5585-9587-4AD7-A18E-4A3706ABBAF7"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.31:*:*:*:*:*:*:*","matchCriteriaId":"A80D58C4-3DCA-4A37-9626-6DC957CEBE90"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.33:*:*:*:*:*:*:*","matchCriteriaId":"38ABD537-EA96-4049-AF05-29C8A6C6D96A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.35:*:*:*:*:*:*:*","matchCriteriaId":"DC3B2A9B-C647-4C9E-9F1E-B7996C558EAD"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.37:*:*:*:*:*:*:*","matchCriteriaId":"550773DB-D436-4AB3-834D-D8FAC7345A4A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.39:*:*:*:*:*:*:*","matchCriteriaId":"F2F65FE5-113E-43A0-BA47-87D76E709CB3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.1:*:*:*:*:*:*:*","matchCriteriaId":"9FFCD0A1-64B4-4AE7-8161-D8A71F9D6904"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.3:*:*:*:*:*:*:*","matchCriteriaId":"C086B402-55AC-4913-A929-380EBC438988"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.5:*:*:*:*:*:*:*","matchCriteriaId":"D4FC14C3-5BFF-4F56-BBD2-3219E7151BF3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.6:*:*:*:*:*:*:*","matchCriteriaId":"40D5CB7D-BD01-4EF3-AF8B-100C200A4C23"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.7:*:*:*:*:*:*:*","matchCriteriaId":"736A02C8-784F-4CEE-BACF-C5C37E8930C0"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.13:*:*:*:*:*:*:*","matchCriteriaId":"200B6A88-EFBD-4935-9596-D8EF3BC24D32"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.14:*:*:*:*:*:*:*","matchCriteriaId":"20131F92-09B2-41D8-B5D9-38EFE6883EC0"}]}]}],"references":[{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg1PM36685","source":"cve@mitre.org"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg27007951","source":"cve@mitre.org"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg1PM36685","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg27007951","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2012-3133","sourceIdentifier":"secalert_us@oracle.com","published":"2012-12-21T05:46:15.980","lastModified":"2026-06-16T23:42:38.477","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the DataDirect ODBC driver, as used in Oracle Hyperion Interactive Reporting 11.1.2.1 and 11.1.2.2, Essbase Server 11.1.2.1 and 11.1.2.2, Production Reporting Server 11.1.2.1 and 11.1.2.2, and Integration Services Server 11.1.2.1 and 11.1.2.2 has unknown impact and attack vectors."},{"lang":"es","value":"Desbordamiento de búfer en el controlador DataDirect ODBC, como se usa en Oracle Hyperion Interactive Reporting v11.1.2.1 and v11.1.2.2, Essbase Server v11.1.2.1 y v11.1.2.2, Production Reporting Server v11.1.2.1 y v11.1.2.2, e Integration Services Server v11.1.2.1 y v11.1.2.2 tiene un impacto y vectores de ataque desconocidos."}],"affected":[{"source":"secalert_us@oracle.com","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:P","baseScore":6.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-119"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:hyperion_interactive_reporting:11.1.2.1:*:*:*:*:*:*:*","matchCriteriaId":"C78DD13A-B296-454C-A2E2-E4F90B85609D"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:hyperion_interactive_reporting:11.1.2.2:*:*:*:*:*:*:*","matchCriteriaId":"D88A52E1-FBED-47FC-A05A-C9CABA13F3DF"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:essbase_server:11.1.2.1:*:*:*:*:*:*:*","matchCriteriaId":"C5E4F7B6-62E8-4AFE-8A03-B1AF70201FBD"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:essbase_server:11.1.2.2:*:*:*:*:*:*:*","matchCriteriaId":"DEED768E-50B3-4542-824C-BCFD39E6B54D"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:hyperion_production_reporting_server:11.1.2.1:*:*:*:*:*:*:*","matchCriteriaId":"1F1E39D5-B5F3-4776-B664-F0E2F384AEFD"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:hyperion_production_reporting_server:11.1.2.2:*:*:*:*:*:*:*","matchCriteriaId":"A11A1134-105C-4B54-BAE2-2604FA877B85"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:integration_services_server:11.1.2.1:*:*:*:*:*:*:*","matchCriteriaId":"EF2602DB-A179-43DC-ADB2-9E86E1D5FEA0"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:integration_services_server:11.1.2.2:*:*:*:*:*:*:*","matchCriteriaId":"3D128950-9558-416C-AFD1-0CCF513D3B1D"}]}]}],"references":[{"url":"https://blogs.oracle.com/sunsecurity/entry/cve_2012_3133_buffer_overflow","source":"secalert_us@oracle.com","tags":["Vendor Advisory"]},{"url":"https://blogs.oracle.com/sunsecurity/entry/cve_2012_3133_buffer_overflow","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2013-7355","sourceIdentifier":"cve@mitre.org","published":"2014-04-10T20:55:05.210","lastModified":"2026-06-17T00:01:49.200","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SQL injection vulnerability in SAP BI Universal Data Integration allows remote attackers to execute arbitrary SQL commands via unspecified vectors, related to the J2EE schema."},{"lang":"es","value":"Vulnerabilidad de inyección SQL en SAP BI Universal Data Integration permite a atacantes remotos ejecutar comandos SQL arbitrarios a través de vectores no especificados, relacionado con el esquema J2EE."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-89"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sap:bi_universal_data_integration:-:*:*:*:*:*:*:*","matchCriteriaId":"BF13F330-8105-42FA-B4A7-E4B63EA31F91"}]}]}],"references":[{"url":"http://www.onapsis.com/get.php?resid=adv_onapsis-2013-013","source":"cve@mitre.org"},{"url":"http://www.onapsis.com/research-advisories.php","source":"cve@mitre.org"},{"url":"http://www.onapsis.com/get.php?resid=adv_onapsis-2013-013","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.onapsis.com/research-advisories.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2013-6214","sourceIdentifier":"hp-security-alert@hp.com","published":"2014-04-19T04:49:24.770","lastModified":"2026-06-17T00:00:10.110","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 9.05, 10.01, and 10.10 allows remote authenticated users to obtain sensitive information via unknown vectors, aka ZDI-CAN-2042."},{"lang":"es","value":"Vulnerabilidad no especificada en el servicio de integración en HP Universal Configuration Management Database 9.05, 10.01 y 10.10 permite a usuarios remotos autenticados obtener información sensible a través de vectores desconocidos, también conocido como ZDI-CAN-2042."}],"affected":[{"source":"hp-security-alert@hp.com","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:P/I:N/A:N","baseScore":4.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:universal_configuration_management_database:9.05:*:*:*:*:*:*:*","matchCriteriaId":"F4E1B8BD-787D-4F4A-BB4B-322C6A350F63"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:universal_configuration_management_database:10.01:*:*:*:*:*:*:*","matchCriteriaId":"D4DA9505-A0DB-4782-9787-6B9D7655CE1A"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:universal_configuration_management_database:10.10:*:*:*:*:*:*:*","matchCriteriaId":"FFC58CA4-066A-40E4-A4E8-044E90030DB9"}]}]}],"references":[{"url":"https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04220407","source":"hp-security-alert@hp.com","tags":["Vendor Advisory"]},{"url":"https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04220407","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2013-6215","sourceIdentifier":"hp-security-alert@hp.com","published":"2014-04-19T21:55:06.387","lastModified":"2026-06-17T00:00:10.210","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 10.01 and 10.10 allows remote authenticated users to execute arbitrary code via unknown vectors, aka ZDI-CAN-1977."},{"lang":"es","value":"Vulnerabilidad no especificada en el servicio de integración en HP Universal Configuration Management Database 10.01 y 10.10 permite a usuarios remotos autenticados ejecutar código arbitrario a través de vectores desconocidos, también conocido como ZDI-CAN-1977."}],"affected":[{"source":"hp-security-alert@hp.com","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:S/C:C/I:C/A:C","baseScore":8.5,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":6.8,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:universal_configuration_management_database:10.01:*:*:*:*:*:*:*","matchCriteriaId":"D4DA9505-A0DB-4782-9787-6B9D7655CE1A"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:universal_configuration_management_database:10.10:*:*:*:*:*:*:*","matchCriteriaId":"FFC58CA4-066A-40E4-A4E8-044E90030DB9"}]}]}],"references":[{"url":"https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04219959","source":"hp-security-alert@hp.com","tags":["Vendor Advisory"]},{"url":"https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04219959","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2014-5427","sourceIdentifier":"ics-cert@hq.dhs.gov","published":"2015-03-29T10:59:00.070","lastModified":"2026-06-17T00:11:32.450","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Johnson Controls Metasys 4.1 through 6.5, as used in Application and Data Server (ADS), Extended Application and Data Server (aka ADX), LonWorks Control Server 85 LCS8520, Network Automation Engine (NAE) 55xx-x, Network Integration Engine (NIE) 5xxx-x, and NxE8500, allows remote attackers to read password hashes via a POST request."},{"lang":"es","value":"Johnson Controls Metasys 4.1 hasta 6.5, utilizado en Application and Data Server (ADS), Extended Application and Data Server (también conocido como ADX), LonWorks Control Server 85 LCS8520, Network Automation Engine (NAE) 55xx-x, Network Integration Engine (NIE) 5xxx-x, y NxE8500, permite a atacantes remotos leer los hashes de contraseñas a través de una solicitud POST."}],"affected":[{"source":"ics-cert@hq.dhs.gov","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:johnsoncontrols:metsys:4.1:*:*:*:*:*:*:*","matchCriteriaId":"BDC187CE-F056-4AA3-AF88-995D8E3E57A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:johnsoncontrols:metsys:6.5:*:*:*:*:*:*:*","matchCriteriaId":"CFCA2025-A2B3-4500-923B-817C45917FB8"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:application_and_data_server:-:*:*:*:*:*:*:*","matchCriteriaId":"AA1CB548-4B4A-41A0-A927-5E7BDA5251A6"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:extended_application_and_data_server:-:*:*:*:*:*:*:*","matchCriteriaId":"DA07946D-96CF-4B2B-95E4-D63F4146E2CB"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:lonworks_control_server_lcs8520:-:*:*:*:*:*:*:*","matchCriteriaId":"6B421E8A-7A7D-4087-9171-281B12A0BD08"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_automation_engine_5510-2:-:*:*:*:*:*:*:*","matchCriteriaId":"E42E94B6-120D-4185-9DD4-3F127C36C34A"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_automation_engine_5510-2u:-:*:*:*:*:*:*:*","matchCriteriaId":"F02BC2FF-3544-4257-8168-A45918326402"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_automation_engine_5511-2:-:*:*:*:*:*:*:*","matchCriteriaId":"1B0FCC6A-7D01-4B84-AC4E-BE654653A68A"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_automation_engine_5520-2:-:*:*:*:*:*:*:*","matchCriteriaId":"DC138F8E-73E5-4241-B0F6-8E2E9E13528F"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_automation_engine_5521-2:-:*:*:*:*:*:*:*","matchCriteriaId":"172E8596-7BAB-4939-8FF7-A7A914954DCD"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_integration_engine_5510-2:-:*:*:*:*:*:*:*","matchCriteriaId":"F999EE8F-3C34-498E-A209-CB1EE57AF995"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_integration_engine_5511-2:-:*:*:*:*:*:*:*","matchCriteriaId":"C8A63074-C95C-4C16-AC73-86ED329D7428"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:nxe8500:-:*:*:*:*:*:*:*","matchCriteriaId":"32087E10-7003-4129-A1EB-98551BFDFF7F"}]}]}],"references":[{"url":"https://ics-cert.us-cert.gov/advisories/ICSA-14-350-02","source":"ics-cert@hq.dhs.gov","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://ics-cert.us-cert.gov/advisories/ICSA-14-350-02","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]}]}},{"cve":{"id":"CVE-2014-5428","sourceIdentifier":"ics-cert@hq.dhs.gov","published":"2015-03-29T10:59:01.400","lastModified":"2026-06-17T00:11:32.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Unrestricted file upload vulnerability in unspecified web services in Johnson Controls Metasys 4.1 through 6.5, as used in Application and Data Server (ADS), Extended Application and Data Server (aka ADX), LonWorks Control Server 85 LCS8520, Network Automation Engine (NAE) 55xx-x, Network Integration Engine (NIE) 5xxx-x, and NxE8500, allows remote attackers to execute arbitrary code by uploading a shell script."},{"lang":"es","value":"Vulnerabilidad de la subida de ficheros sin restricciones en servicios web no especificados en Johnson Controls Metasys 4.1 hasta 6.5, utilizado en Application and Data Server (ADS), Extended Application and Data Server (también conocido como ADX), LonWorks Control Server 85 LCS8520, Network Automation Engine (NAE) 55xx-x, Network Integration Engine (NIE) 5xxx-x, y NxE8500, permite a atacantes remotos ejecutar código arbitrario mediante la subida de una secuencia de comandos de shell."}],"affected":[{"source":"ics-cert@hq.dhs.gov","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:johnsoncontrols:metsys:4.1:*:*:*:*:*:*:*","matchCriteriaId":"BDC187CE-F056-4AA3-AF88-995D8E3E57A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:johnsoncontrols:metsys:6.5:*:*:*:*:*:*:*","matchCriteriaId":"CFCA2025-A2B3-4500-923B-817C45917FB8"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:application_and_data_server:-:*:*:*:*:*:*:*","matchCriteriaId":"AA1CB548-4B4A-41A0-A927-5E7BDA5251A6"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:extended_application_and_data_server:-:*:*:*:*:*:*:*","matchCriteriaId":"DA07946D-96CF-4B2B-95E4-D63F4146E2CB"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:lonworks_control_server_lcs8520:-:*:*:*:*:*:*:*","matchCriteriaId":"6B421E8A-7A7D-4087-9171-281B12A0BD08"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_automation_engine_5510-2:-:*:*:*:*:*:*:*","matchCriteriaId":"E42E94B6-120D-4185-9DD4-3F127C36C34A"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_automation_engine_5510-2u:-:*:*:*:*:*:*:*","matchCriteriaId":"F02BC2FF-3544-4257-8168-A45918326402"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_automation_engine_5511-2:-:*:*:*:*:*:*:*","matchCriteriaId":"1B0FCC6A-7D01-4B84-AC4E-BE654653A68A"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_automation_engine_5520-2:-:*:*:*:*:*:*:*","matchCriteriaId":"DC138F8E-73E5-4241-B0F6-8E2E9E13528F"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_automation_engine_5521-2:-:*:*:*:*:*:*:*","matchCriteriaId":"172E8596-7BAB-4939-8FF7-A7A914954DCD"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_integration_engine_5510-2:-:*:*:*:*:*:*:*","matchCriteriaId":"F999EE8F-3C34-498E-A209-CB1EE57AF995"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:network_integration_engine_5511-2:-:*:*:*:*:*:*:*","matchCriteriaId":"C8A63074-C95C-4C16-AC73-86ED329D7428"},{"vulnerable":false,"criteria":"cpe:2.3:h:johnsoncontrols:nxe8500:-:*:*:*:*:*:*:*","matchCriteriaId":"32087E10-7003-4129-A1EB-98551BFDFF7F"}]}]}],"references":[{"url":"https://ics-cert.us-cert.gov/advisories/ICSA-14-350-02","source":"ics-cert@hq.dhs.gov","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://ics-cert.us-cert.gov/advisories/ICSA-14-350-02","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]}],"evaluatorComment":"<a href=\"http://cwe.mitre.org/data/definitions/434.html\">CWE-434: Unrestricted Upload of File with Dangerous Type</a>"}},{"cve":{"id":"CVE-2015-3345","sourceIdentifier":"cve@mitre.org","published":"2015-04-21T16:59:05.263","lastModified":"2026-06-17T00:25:46.650","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SQL injection vulnerability in the PHPlist Integration Module before 6.x-1.7 for Drupal allows remote administrators to execute arbitrary SQL commands via unspecified vectors, related to the \"phpList database.\""},{"lang":"es","value":"Vulnerabilidad de inyección SQL en el módulo PHPlist Integration anterior a 6.x-1.7 para Drupal permite a administradores remotos ejecutar comandos SQL arbitrarios a través de vectores no especificados, relacionado con la 'base de datos de phpList.'"}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:P/I:P/A:P","baseScore":6.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":8.0,"impactScore":6.4,"acInsufInfo":true,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-89"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phplist_integration_project:phplist_integration:*:*:*:*:*:drupal:*:*","versionEndIncluding":"6.x-1.6","matchCriteriaId":"3922C026-D692-454D-AA01-ECD94CA587B0"}]}]}],"references":[{"url":"http://www.openwall.com/lists/oss-security/2015/01/29/6","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/72634","source":"cve@mitre.org"},{"url":"https://www.drupal.org/node/2402517","source":"cve@mitre.org","tags":["Patch"]},{"url":"https://www.drupal.org/node/2403343","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.openwall.com/lists/oss-security/2015/01/29/6","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/72634","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.drupal.org/node/2402517","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://www.drupal.org/node/2403343","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}}]}