ibm

8,153 tracked vulnerabilities.

CVE-2025-36386 CRITICAL
IBM Maximo Application Suite - Auth Bypass
Oct 28, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-36085 MEDIUM
IBM Concert 1.0.0-2.0.0 - Authenticated Server-Side Request Forgery
Oct 28, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-36083 MEDIUM
IBM Concert Software <2.0.0 - Info Disclosure
Oct 28, 2025
CVSS 6.2
EPSS 0.00
CVE-2025-36081 MEDIUM
IBM Concert Software <2.0.0 - Info Disclosure
Oct 28, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-33133 MEDIUM
IBM DB2 High Performance Unload <6.5 - Memory Corruption
Oct 28, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-33132 MEDIUM
IBM DB2 High Performance Unload <6.5 - DoS
Oct 28, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-33131 MEDIUM
IBM DB2 High Performance Unload <6.5 - Buffer Overflow
Oct 28, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-33126 MEDIUM
IBM DB2 High Performance Unload - DoS
Oct 28, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-36170 MEDIUM
IBM QRadar SIEM 7.5-7.5.0 Update Pack 13 Independent Fix 02 - Authenticated Stored Cross-Site Scripting
Oct 27, 2025
CVSS 6.4
EPSS 0.00
CVE-2025-36138 MEDIUM
IBM QRadar SIEM 7.5-7.5.0 Update Pack 13 Independent Fix 02 - Authenticated Stored Cross-Site Scripting
Oct 27, 2025
CVSS 6.4
EPSS 0.00
CVE-2025-36007 HIGH
IBM QRadar SIEM 7.5-7.5.0 Update Pack 13 Independent Fix 02 - Privilege Escalation via Update Script
Oct 27, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-36121 MEDIUM
IBM OpenPages 9.0-9.1 - Authenticated HTML Injection
Oct 27, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-36361 MEDIUM
IBM App Connect Enterprise 12.0.1.0-12.0.12.17 and 13.0.1.0-13.0.4.2 - Authenticated Missing Authorization
Oct 24, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-36128 HIGH
IBM MQ 9.1-9.4 - Denial of Service via Slowloris-Type Attack
Oct 16, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-36002 MEDIUM
IBM Sterling B2B Integrator & File Gateway <6.2.1 - Info Disclosure
Oct 16, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-2529 LOW
IBM Terracotta 10.15.0-10.15.0.22 - Degraded Cache-Write Performance via Unfiltered External Keys
Oct 15, 2025
CVSS 2.9
EPSS 0.00
CVE-2025-27906 MEDIUM
IBM Content Navigator <3.2.0 - Info Disclosure
Oct 14, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-36087 HIGH
IBM Security Verify Access 10.0.0-10.0.9 and 11.0.0 - Use of Hard-coded Credentials
Oct 13, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-33096 MEDIUM
IBM Engineering Requirements Management Doors Next <7.1 - DoS
Oct 12, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-2140 MEDIUM
IBM Engineering Requirements Management Doors Next <7.1 - Auth Bypass
Oct 12, 2025
CVSS 5.7
EPSS 0.00
CVE-2025-2139 LOW
IBM Engineering Requirements Management Doors Next <7.1 - Privilege...
Oct 12, 2025
CVSS 3.5
EPSS 0.00
CVE-2025-2138 LOW
IBM Engineering Requirements Management Doors Next <7.1 - Privilege...
Oct 12, 2025
CVSS 3.5
EPSS 0.00
CVE-2025-36225 MEDIUM
IBM Aspera Faspex 5.0.0-5.0.13.1 - Authenticated Sensitive Information Disclosure via Observable Discrepancy
Oct 09, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-36171 MEDIUM
IBM Aspera Faspex 5.0.0-5.0.13.1 - Denial of Service via API Input Validation
Oct 09, 2025
CVSS 4.9
EPSS 0.00
CVE-2025-36156 HIGH
IBM InfoSphere Data Replication VSAM for z/OS Remote Source 11.4 - Stack-Based Buffer Overflow via CECSUB or CECRM Files
Oct 07, 2025
CVSS 7.4
EPSS 0.00