ibm
8,320 tracked vulnerabilities.
CVE-2020-4343
HIGH
IBM i2 Analysts Notebook 9.2.1 - Remote Code Execution via Crafted File
May 14, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-4299
MEDIUM
IBM Sterling B2B Integrator <6.0.3.1 - Info Disclosure
May 14, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-4288
HIGH
IBM i2 Analyst's Notebook 9.2.1 - Remote Code Execution via Crafted Document
May 14, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-4287
HIGH
IBM i2 Analyst's Notebook 9.2.1 - Remote Code Execution via Crafted Document
May 14, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-4285
HIGH
IBM i2 Analysts Notebook 9.2.1 - Remote Code Execution via Crafted Document
May 14, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-4266
HIGH
IBM i2 Analysts Notebook 9.2.1 - Out-of-bounds Write via Crafted File
May 14, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-4265
HIGH
IBM i2 Analysts Notebook 9.2.1 - Out-of-bounds Write via Crafted File
May 14, 2020
CVSS 7.3
EPSS 0.00
CVE-2020-4264
HIGH
IBM i2 Analysts Notebook 9.2.1 - Out-of-bounds Write via Crafted File
May 14, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-4263
HIGH
IBM i2 Analysts Notebook 9.2.1 - Out-of-bounds Write via Crafted File
May 14, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-4262
HIGH
IBM i2 Analysts Notebook 9.2.1 - Remote Code Execution via Crafted File
May 14, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-4261
HIGH
IBM i2 Analysts Notebook 9.2.1 - Out-of-bounds Write via Crafted File
May 14, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-4259
MEDIUM
IBM Sterling File Gateway 2.2.0.0-2.2.6.5_1 - Authenticated Privilege Escalation via Cookie Manipulation
May 14, 2020
CVSS 6.5
EPSS 0.01
CVE-2020-4258
HIGH
IBM i2 Analysts Notebook 9.2.1 - Out-of-bounds Write via Crafted File
May 14, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-4257
HIGH
IBM i2 Analysts Notebook 9.2.1 - Remote Code Execution via Crafted File
May 14, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-4312
MEDIUM
IBM Sterling B2B Integrator <6.0.3.1 - Info Disclosure
May 13, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-4346
MEDIUM
IBM API Connect <2018.4.1.10 - Info Disclosure
May 12, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-4195
MEDIUM
IBM API Connect V2018.4.1.0-2018.4.1.10 - CSRF
May 12, 2020
CVSS 5.4
EPSS 0.01
CVE-2020-4430
MEDIUM
KEV
IBM Data Risk Manager 2.0.1-2.0.4 - Authenticated Path Traversal via URL Request
May 07, 2020
CVSS 4.3
EPSS 0.69
CVE-2020-4429
CRITICAL
NUCLEI
IBM Data Risk Manager 2.0.1-2.0.6 - Use of Hard-coded Credentials
May 07, 2020
CVSS 9.8
EPSS 0.71
CVE-2020-4428
CRITICAL
KEV
IBM Data Risk Manager 2.0.1-2.0.4 - Authenticated OS Command Injection
May 07, 2020
CVSS 9.1
EPSS 0.62
CVE-2020-4427
CRITICAL
KEVNUCLEI
IBM Data Risk Manager 2.0.1-2.0.6 - Authentication Bypass via SAML Misconfiguration
May 07, 2020
CVSS 9.8
EPSS 0.70
CVE-2020-4446
MEDIUM
IBM Business Process Manager 8.0-8.6 and Business Automation Workflow 18.0-19.0 - Incorrect Authorization
May 06, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-4421
MEDIUM
IBM WebSphere Application Liberty 19.0.0.5-20.0.0.4 - Authenticated Identity Spoofing via OpenID Connect
May 06, 2020
CVSS 5.4
EPSS 0.01
CVE-2020-4384
MEDIUM
IBM InfoSphere Information Server 11.3, 11.5, 11.7 - Cross-Site Scripting
May 06, 2020
CVSS 5.4
EPSS 0.01
CVE-2020-10693
MEDIUM
Hibernate Validator 6.1.2.Final - Info Disclosure
May 06, 2020
CVSS 5.3
EPSS 0.02
Products
websphere_application_server 465
aix 400
db2 339
rational_quality_manager 202
sterling_b2b_integrator 195
qradar_security_information_and_event_manager 190
infosphere_information_server 189
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 104
sterling_file_gateway 93
vios 92
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
api_connect 81
rational_software_architect_design_manager 81
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
i 65
smartcloud_control_desk 65
Quick Filters