IBM Sterling Partner Engagement Manager 6.2.0 Essentials Edition

CPE Details

IBM Sterling Partner Engagement Manager 6.2.0 Essentials Edition
6.2.0
2023-06-13
15h39 +00:00
2023-07-14
16h44 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.0:*:*:*:essentials:*:*:*

Informations

Vendor

ibm

Product

sterling_partner_engagement_manager

Version

6.2.0

Software Edition

essentials

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-28517 2024-03-13 09h14 +00:00 IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 250421.
5.4
Medium
CVE-2023-38722 2023-10-23 17h40 +00:00 IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.2 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 262174.
6.4
Medium
CVE-2023-43045 2023-10-23 17h37 +00:00 IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.2 could allow a remote user to perform unauthorized actions due to improper authentication. IBM X-Force ID: 266896.
7.5
High
CVE-2023-23480 2023-06-08 01h42 +00:00 IBM Sterling Partner Engagement Manager 6.1, 6.2, and 6.2.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 245885.
5.4
Medium
CVE-2023-23481 2023-06-08 01h29 +00:00 IBM Sterling Partner Engagement Manager 6.1, 6.2, and 6.2.1 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 245889.
6.4
Medium
CVE-2023-23482 2023-06-08 01h09 +00:00 IBM Sterling Partner Engagement Manager 6.1, 6.2, and 6.2.1 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 245891.
9.6
Critical