Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Documentation Offline
Total 5 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-17468 1 Ibm 1 Documentation Offline 2026-08-25 N/A 5.3 MEDIUM
IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to forge valid session tokens due to the use of a hardcoded cryptographic key.
CVE-2026-17473 1 Ibm 1 Documentation Offline 2026-08-25 N/A 7.5 HIGH
IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to read arbitrary files due to improper limitation of a pathname to a restricted directory.
CVE-2026-16713 1 Ibm 1 Documentation Offline 2026-08-17 N/A 4.3 MEDIUM
IBM Documentation Offline 1.0.0 through 1.4.1 IBM Documentation could allow a remote attacker to obtain sensitive information due to a security misconfiguration where the documentation server binds to an unrestricted IP address.
CVE-2026-17482 1 Ibm 1 Documentation Offline 2026-08-17 N/A 9.8 CRITICAL
IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper control of file paths.
CVE-2026-17481 1 Ibm 1 Documentation Offline 2026-08-17 N/A 8.8 HIGH
IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper output neutralization for logs.