Known vulnerabilities in IBM WebSphere Commerce

Software CPE: cpe:2.3:a:ibm_corporation:ibm_websphere_commerce:*:*:*:*:*:*:*:*
Total vulnerabilities: 3
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM WebSphere Commerce IBM WebSphere Commerce is affected by 3 known vulnerabilities: 3 low Critical High Medium Low

Vulnerabilities (3)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU15754 - Improper Control of Generation of Code ('Code Injection')
CVE-2018-1808
CWE-94 Low
No
No
9.0.0.7 06.11.2018 SB2018110717
#VU6388 - Session Fixation
CVE-2017-1170
CWE-384 Low
No
No
- 26.04.2017 SB2017042602
#VU531 - Exposure of sensitive information to an unauthorized actor
CVE-2016-5986
CWE-200 Low
No
No
- 19.09.2016 SB2016091911
SB2017050833