ibm
8,320 tracked vulnerabilities.
CVE-2020-4249
MEDIUM
IBM Security Identity Governance and Intelligence 5.2.6 - Sensitive Information Disclosure via Incorrect Authorization
May 28, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-4246
HIGH
IBM Security Identity Governance and Intelligence 5.2.6 - XML External Entity Injection
May 28, 2020
CVSS 7.1
EPSS 0.01
CVE-2020-4245
HIGH
IBM Security Identity Governance and Intelligence <5.2.6 - Info Dis...
May 28, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4244
MEDIUM
IBM Security Identity Governance and Intelligence <5.2.6 - Info Dis...
May 28, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-4233
MEDIUM
IBM Security Identity Governance and Intelligence 5.2.6 - Sensitive Information Exposure via Unsecured Session Cookie
May 28, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-4232
HIGH
IBM Security Identity Governance and Intelligence 5.2.6 - Username Enumeration via Excessive Authentication Attempts
May 28, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4231
MEDIUM
IBM Security Identity Governance and Intelligence 5.2.6 - Authenticated Command Injection via Hazardous Input Validation
May 28, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-4379
HIGH
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Use of a Broken or Risky Cryptographic Algorithm
May 27, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4378
MEDIUM
IBM Spectrum Scale <5.0.4.4 - Privilege Escalation
May 27, 2020
CVSS 4.9
EPSS 0.01
CVE-2020-4358
MEDIUM
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Cross-Site Scripting in Web UI
May 27, 2020
CVSS 5.4
EPSS 0.01
CVE-2020-4357
MEDIUM
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Sensitive Information Exposure via Error Message
May 27, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-4350
HIGH
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Use of a Broken or Risky Cryptographic Algorithm
May 27, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4349
HIGH
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Use of a Broken or Risky Cryptographic Algorithm
May 27, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4348
MEDIUM
IBM Spectrum Scale 4.2.0.0-4.2.3.21 and 5.0.0.0-5.0.4.4 - Authenticated Missing Function Level Access Control
May 27, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-4226
HIGH
IBM MobileFirst Platform Foundation 8.0.0.0 - Exposure of Sensitive Information via URL Parameters
May 27, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-4461
MEDIUM
IBM Security Access Manager Appliance 9.0.7.1 - Auth Bypass
May 20, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-4412
MEDIUM
IBM Spectrum Scale 4.2.0.0-4.2.3.21 and 5.0.0.0-5.0.4.3 - Denial of Service in File System Component
May 19, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-4411
HIGH
IBM Spectrum Scale 4.2.0.0-4.2.3.21 and 5.0.0.0-5.0.4.3 - Denial of Service via Invalid Ioctl Arguments
May 19, 2020
CVSS 7.1
EPSS 0.00
CVE-2020-4298
MEDIUM
IBM InfoSphere Information Server 11.3, 11.5, 11.7 - Cross-Site Scripting
May 19, 2020
CVSS 5.4
EPSS 0.01
CVE-2020-4286
MEDIUM
IBM InfoSphere Information Server 11.3, 11.5, 11.7 - Cross-Site Request Forgery
May 19, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-4345
LOW
IBM i 7.2-7.4 - SQL Injection
May 17, 2020
CVSS 3.3
EPSS 0.00
CVE-2020-4468
HIGH
IBM i2 Analysts Notebook 9.2.1 - Remote Code Execution via Crafted Document
May 14, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-4467
HIGH
IBM i2 Analysts Notebook 9.2.1 - Remote Code Execution via Crafted Document
May 14, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-4422
HIGH
IBM i2 Analysts Notebook 9.2.1 - Remote Code Execution via Crafted File
May 14, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-4365
MEDIUM
IBM WebSphere Application Server 8.5.0.0-8.5.5.16 - Authenticated Server-Side Request Forgery
May 14, 2020
CVSS 4.3
EPSS 0.01
Products
websphere_application_server 465
aix 400
db2 339
rational_quality_manager 202
sterling_b2b_integrator 195
qradar_security_information_and_event_manager 190
infosphere_information_server 189
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 104
sterling_file_gateway 93
vios 92
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
api_connect 81
rational_software_architect_design_manager 81
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
i 65
smartcloud_control_desk 65
Quick Filters