Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Kenexa Lms
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-8928 1 Ibm 1 Kenexa Lms 2017-02-07 6.5 MEDIUM 7.6 HIGH
IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
CVE-2016-8931 1 Ibm 1 Kenexa Lms 2017-02-07 6.5 MEDIUM 8.8 HIGH
IBM Kenexa LMS on Cloud could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server.
CVE-2016-8930 1 Ibm 1 Kenexa Lms 2017-02-07 6.5 MEDIUM 7.6 HIGH
IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
CVE-2016-8932 1 Ibm 1 Kenexa Lms 2017-02-07 6.5 MEDIUM 8.8 HIGH
IBM Kenexa LMS on Cloud could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server.