VendorsIBMsterling_order_management10
Vulnerabilities

IBM Sterling Order Management 10

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2022-33959
IBM Sterling Order Management privilege escalation
Published 2023-04-07 · Modified
8.1EPSS 0.005
CVE-2022-34333
IBM Sterling Order Management information disclosure
Published 2023-04-07 · Modified
7.5EPSS 0.006
CVE-2021-20554
IBM Sterling Order Management 9.4, 9.5, and 10.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199179.
Published 2021-09-30 · Modified
6.1EPSS 0.007