ibm
8,153 tracked vulnerabilities.
CVE-2025-36386
CRITICAL
IBM Maximo Application Suite - Auth Bypass
Oct 28, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-36085
MEDIUM
IBM Concert 1.0.0-2.0.0 - Authenticated Server-Side Request Forgery
Oct 28, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-36083
MEDIUM
IBM Concert Software <2.0.0 - Info Disclosure
Oct 28, 2025
CVSS 6.2
EPSS 0.00
CVE-2025-36081
MEDIUM
IBM Concert Software <2.0.0 - Info Disclosure
Oct 28, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-33133
MEDIUM
IBM DB2 High Performance Unload <6.5 - Memory Corruption
Oct 28, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-33132
MEDIUM
IBM DB2 High Performance Unload <6.5 - DoS
Oct 28, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-33131
MEDIUM
IBM DB2 High Performance Unload <6.5 - Buffer Overflow
Oct 28, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-33126
MEDIUM
IBM DB2 High Performance Unload - DoS
Oct 28, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-36170
MEDIUM
IBM QRadar SIEM 7.5-7.5.0 Update Pack 13 Independent Fix 02 - Authenticated Stored Cross-Site Scripting
Oct 27, 2025
CVSS 6.4
EPSS 0.00
CVE-2025-36138
MEDIUM
IBM QRadar SIEM 7.5-7.5.0 Update Pack 13 Independent Fix 02 - Authenticated Stored Cross-Site Scripting
Oct 27, 2025
CVSS 6.4
EPSS 0.00
CVE-2025-36007
HIGH
IBM QRadar SIEM 7.5-7.5.0 Update Pack 13 Independent Fix 02 - Privilege Escalation via Update Script
Oct 27, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-36121
MEDIUM
IBM OpenPages 9.0-9.1 - Authenticated HTML Injection
Oct 27, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-36361
MEDIUM
IBM App Connect Enterprise 12.0.1.0-12.0.12.17 and 13.0.1.0-13.0.4.2 - Authenticated Missing Authorization
Oct 24, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-36128
HIGH
IBM MQ 9.1-9.4 - Denial of Service via Slowloris-Type Attack
Oct 16, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-36002
MEDIUM
IBM Sterling B2B Integrator & File Gateway <6.2.1 - Info Disclosure
Oct 16, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-2529
LOW
IBM Terracotta 10.15.0-10.15.0.22 - Degraded Cache-Write Performance via Unfiltered External Keys
Oct 15, 2025
CVSS 2.9
EPSS 0.00
CVE-2025-27906
MEDIUM
IBM Content Navigator <3.2.0 - Info Disclosure
Oct 14, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-36087
HIGH
IBM Security Verify Access 10.0.0-10.0.9 and 11.0.0 - Use of Hard-coded Credentials
Oct 13, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-33096
MEDIUM
IBM Engineering Requirements Management Doors Next <7.1 - DoS
Oct 12, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-2140
MEDIUM
IBM Engineering Requirements Management Doors Next <7.1 - Auth Bypass
Oct 12, 2025
CVSS 5.7
EPSS 0.00
CVE-2025-2139
LOW
IBM Engineering Requirements Management Doors Next <7.1 - Privilege...
Oct 12, 2025
CVSS 3.5
EPSS 0.00
CVE-2025-2138
LOW
IBM Engineering Requirements Management Doors Next <7.1 - Privilege...
Oct 12, 2025
CVSS 3.5
EPSS 0.00
CVE-2025-36225
MEDIUM
IBM Aspera Faspex 5.0.0-5.0.13.1 - Authenticated Sensitive Information Disclosure via Observable Discrepancy
Oct 09, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-36171
MEDIUM
IBM Aspera Faspex 5.0.0-5.0.13.1 - Denial of Service via API Input Validation
Oct 09, 2025
CVSS 4.9
EPSS 0.00
CVE-2025-36156
HIGH
IBM InfoSphere Data Replication VSAM for z/OS Remote Source 11.4 - Stack-Based Buffer Overflow via CECSUB or CECRM Files
Oct 07, 2025
CVSS 7.4
EPSS 0.00
Products
websphere_application_server 444
aix 393
db2 327
rational_quality_manager 202
sterling_b2b_integrator 195
infosphere_information_server 188
qradar_security_information_and_event_manager 187
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 102
sterling_file_gateway 93
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
vios 85
rational_software_architect_design_manager 81
api_connect 79
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
smartcloud_control_desk 65
urbancode_deploy 63
Quick Filters