ibm

8,320 tracked vulnerabilities.

CVE-2020-4529 HIGH
IBM Maximo Asset Management 7.6.0 and 7.6.1 - Authenticated Server-Side Request Forgery
Jun 08, 2020
CVSS 7.4
EPSS 0.01
CVE-2020-4450 CRITICAL
IBM WebSphere Application Server 8.5.0.0-8.5.5.17 - Remote Code Execution via Untrusted Data Deserialization
Jun 05, 2020
CVSS 9.8
EPSS 0.34
CVE-2020-4449 HIGH
IBM WebSphere Application Server 7.0.0.0-7.0.0.45 - Information Disclosure via Deserialization of Untrusted Data
Jun 05, 2020
CVSS 7.5
EPSS 0.04
CVE-2020-4448 CRITICAL
IBM WebSphere Application Server 7.0-9.0 - Remote Code Execution via Untrusted Object Deserialization
Jun 05, 2020
CVSS 9.8
EPSS 0.12
CVE-2020-4229 HIGH
IBM Worklight/MobileFoundation 8.0.0.0 - Privilege Escalation
Jun 05, 2020
CVSS 7.3
EPSS 0.01
CVE-2020-4509 HIGH
IBM QRadar SIEM 7.3 and 7.4 - XML External Entity Injection
Jun 04, 2020
CVSS 7.6
EPSS 0.02
CVE-2020-4193 CRITICAL
IBM Security Guardium 11.1 - Inadequate Account Lockout Setting
Jun 04, 2020
CVSS 9.8
EPSS 0.01
CVE-2020-4191 MEDIUM
IBM Security Guardium 11.1 - Use of a Broken or Risky Cryptographic Algorithm
Jun 04, 2020
CVSS 4.4
EPSS 0.00
CVE-2020-4183 MEDIUM
IBM Security Guardium 11.1 - Stored Cross-Site Scripting in Web UI
Jun 04, 2020
CVSS 6.1
EPSS 0.01
CVE-2020-4307 MEDIUM
IBM Security Guardium 11.1 - Denial of Service via Solr Dashboard Access
Jun 03, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-4190 MEDIUM
IBM Security Guardium 10.6, 11.0, and 11.1 - Use of Hard-coded Credentials
Jun 03, 2020
CVSS 6.7
EPSS 0.00
CVE-2020-4187 MEDIUM
IBM Security Guardium 11.1 - Info Disclosure
Jun 03, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-4182 MEDIUM
IBM Security Guardium 11.1 - Stored Cross-Site Scripting
Jun 03, 2020
CVSS 6.1
EPSS 0.01
CVE-2020-4180 HIGH
IBM Security Guardium 11.1 - Authenticated OS Command Injection
Jun 03, 2020
CVSS 8.8
EPSS 0.03
CVE-2020-4177 CRITICAL
IBM Security Guardium 11.1 - Use of Hard-coded Credentials
Jun 03, 2020
CVSS 9.8
EPSS 0.01
CVE-2020-4503 MEDIUM
IBM Planning Analytics Local 2.0.0-2.0.9.1 - Cross-Site Scripting
Jun 02, 2020
CVSS 6.1
EPSS 0.01
CVE-2020-4431 MEDIUM
IBM Planning Analytics Local 2.0.0-2.0.9.1 - Cross-Site Scripting
Jun 02, 2020
CVSS 5.4
EPSS 0.01
CVE-2020-4367 HIGH
IBM Planning Analytics Local 2.0-2.0.9 - Use of a Broken or Risky Cryptographic Algorithm
Jun 02, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4366 MEDIUM
IBM Planning Analytics Local 2.0.0-2.0.9 - Stored Cross-Site Scripting in Web UI
Jun 02, 2020
CVSS 6.1
EPSS 0.01
CVE-2020-4360 MEDIUM
IBM Planning Analytics Local 2.0.0-2.0.9.1 - Cross-Site Scripting in Web UI
Jun 02, 2020
CVSS 5.4
EPSS 0.01
CVE-2020-4490 MEDIUM
IBM Business Automation Workflow <19 - Auth Bypass
May 29, 2020
CVSS 6.1
EPSS 0.01
CVE-2020-4352 HIGH
IBM MQ for HPE NonStop 8.0.4 and 8.1.0 - Privilege Escalation in Restricted Mode
May 29, 2020
CVSS 7.0
EPSS 0.00
CVE-2020-4306 MEDIUM
IBM Planning Analytics Local 2.0.0-2.0.9 - Cross-Site Scripting
May 29, 2020
CVSS 5.4
EPSS 0.01
CVE-2020-4248 LOW
IBM Security Identity Governance and Intelligence 5.2.6 - Sensitive Information Exposure via Error Message
May 28, 2020
CVSS 2.7
EPSS 0.01
CVE-2020-4419 MEDIUM
IBM Jazz Reporting Service 6.0.6, 6.0.6.1, and 7.0 - Cross-Site Scripting
May 28, 2020
CVSS 5.4
EPSS 0.01