Total
5 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-17468 | 1 Ibm | 1 Documentation Offline | 2026-08-25 | N/A | 5.3 MEDIUM |
| IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to forge valid session tokens due to the use of a hardcoded cryptographic key. | |||||
| CVE-2026-17473 | 1 Ibm | 1 Documentation Offline | 2026-08-25 | N/A | 7.5 HIGH |
| IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to read arbitrary files due to improper limitation of a pathname to a restricted directory. | |||||
| CVE-2026-16713 | 1 Ibm | 1 Documentation Offline | 2026-08-17 | N/A | 4.3 MEDIUM |
| IBM Documentation Offline 1.0.0 through 1.4.1 IBM Documentation could allow a remote attacker to obtain sensitive information due to a security misconfiguration where the documentation server binds to an unrestricted IP address. | |||||
| CVE-2026-17482 | 1 Ibm | 1 Documentation Offline | 2026-08-17 | N/A | 9.8 CRITICAL |
| IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper control of file paths. | |||||
| CVE-2026-17481 | 1 Ibm | 1 Documentation Offline | 2026-08-17 | N/A | 8.8 HIGH |
| IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper output neutralization for logs. | |||||
