ibm

8,320 tracked vulnerabilities.

CVE-2020-4249 MEDIUM
IBM Security Identity Governance and Intelligence 5.2.6 - Sensitive Information Disclosure via Incorrect Authorization
May 28, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-4246 HIGH
IBM Security Identity Governance and Intelligence 5.2.6 - XML External Entity Injection
May 28, 2020
CVSS 7.1
EPSS 0.01
CVE-2020-4245 HIGH
IBM Security Identity Governance and Intelligence <5.2.6 - Info Dis...
May 28, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4244 MEDIUM
IBM Security Identity Governance and Intelligence <5.2.6 - Info Dis...
May 28, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-4233 MEDIUM
IBM Security Identity Governance and Intelligence 5.2.6 - Sensitive Information Exposure via Unsecured Session Cookie
May 28, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-4232 HIGH
IBM Security Identity Governance and Intelligence 5.2.6 - Username Enumeration via Excessive Authentication Attempts
May 28, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4231 MEDIUM
IBM Security Identity Governance and Intelligence 5.2.6 - Authenticated Command Injection via Hazardous Input Validation
May 28, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-4379 HIGH
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Use of a Broken or Risky Cryptographic Algorithm
May 27, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4378 MEDIUM
IBM Spectrum Scale <5.0.4.4 - Privilege Escalation
May 27, 2020
CVSS 4.9
EPSS 0.01
CVE-2020-4358 MEDIUM
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Cross-Site Scripting in Web UI
May 27, 2020
CVSS 5.4
EPSS 0.01
CVE-2020-4357 MEDIUM
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Sensitive Information Exposure via Error Message
May 27, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-4350 HIGH
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Use of a Broken or Risky Cryptographic Algorithm
May 27, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4349 HIGH
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Use of a Broken or Risky Cryptographic Algorithm
May 27, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4348 MEDIUM
IBM Spectrum Scale 4.2.0.0-4.2.3.21 and 5.0.0.0-5.0.4.4 - Authenticated Missing Function Level Access Control
May 27, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-4226 HIGH
IBM MobileFirst Platform Foundation 8.0.0.0 - Exposure of Sensitive Information via URL Parameters
May 27, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4461 MEDIUM
IBM Security Access Manager Appliance 9.0.7.1 - Auth Bypass
May 20, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-4412 MEDIUM
IBM Spectrum Scale 4.2.0.0-4.2.3.21 and 5.0.0.0-5.0.4.3 - Denial of Service in File System Component
May 19, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-4411 HIGH
IBM Spectrum Scale 4.2.0.0-4.2.3.21 and 5.0.0.0-5.0.4.3 - Denial of Service via Invalid Ioctl Arguments
May 19, 2020
CVSS 7.1
EPSS 0.00
CVE-2020-4298 MEDIUM
IBM InfoSphere Information Server 11.3, 11.5, 11.7 - Cross-Site Scripting
May 19, 2020
CVSS 5.4
EPSS 0.01
CVE-2020-4286 MEDIUM
IBM InfoSphere Information Server 11.3, 11.5, 11.7 - Cross-Site Request Forgery
May 19, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-4345 LOW
IBM i 7.2-7.4 - SQL Injection
May 17, 2020
CVSS 3.3
EPSS 0.00
CVE-2020-4468 HIGH
IBM i2 Analysts Notebook 9.2.1 - Remote Code Execution via Crafted Document
May 14, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-4467 HIGH
IBM i2 Analysts Notebook 9.2.1 - Remote Code Execution via Crafted Document
May 14, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-4422 HIGH
IBM i2 Analysts Notebook 9.2.1 - Remote Code Execution via Crafted File
May 14, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-4365 MEDIUM
IBM WebSphere Application Server 8.5.0.0-8.5.5.16 - Authenticated Server-Side Request Forgery
May 14, 2020
CVSS 4.3
EPSS 0.01