CVEs (5)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Ibm 2Security Directory Integrator Security Verify Directory IntegratorJun 17, 2026 Jan 27, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by...Show more |
1Ibm 2Security Directory Integrator Security Verify Directory IntegratorJun 17, 2026 Jan 27, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by...Show more |
1Ibm 2Security Directory Integrator Security Verify Directory IntegratorJun 17, 2026 Jan 27, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 could disclose sensitive information about directory contents that could aid in further attacks against the system. |
1Ibm 2Security Directory Integrator Security Verify Directory IntegratorJun 17, 2026 Aug 16, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 IBM Security Directory Integrator 7.2.0 and Security Verify Directory Integrator 10.0.0 does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of res...Show more |
1Ibm 2Security Directory Integrator Security Verify Directory IntegratorJun 17, 2026 Jul 30, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker...Show more |