ibm
8,320 tracked vulnerabilities.
CVE-2019-4218
LOW
IBM Security Information Queue 1.0.0-1.0.2 - Unprotected Local File Exposure
Jun 06, 2019
CVSS 3.3
EPSS 0.00
CVE-2019-4217
MEDIUM
IBM Security Information Queue <1.0.3 - CSRF
Jun 06, 2019
CVSS 6.1
EPSS 0.01
CVE-2019-4162
HIGH
IBM Security Information Queue 1.0.0-1.0.2 - Cleartext Transmission of Sensitive Information
Jun 06, 2019
CVSS 7.5
EPSS 0.01
CVE-2019-4161
LOW
IBM Security Information Queue <1.0.3 - Info Disclosure
Jun 06, 2019
CVSS 3.3
EPSS 0.00
CVE-2019-4220
MEDIUM
IBM InfoSphere Information Server 11.7.1.0 - Use of Hard-coded Encryption Key
Jun 06, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-4201
MEDIUM
IBM Jazz for Service Management 1.1.3-1.1.3.2 - Open Redirect
Jun 06, 2019
CVSS 6.1
EPSS 0.01
CVE-2019-4185
HIGH
IBM InfoSphere Information Server 11.7.1 - Privilege Escalation
Jun 06, 2019
CVSS 8.3
EPSS 0.01
CVE-2019-4056
MEDIUM
IBM Maximo Asset Management 7.6 - Unrestricted Upload of File with Dangerous Type
Jun 06, 2019
CVSS 4.3
EPSS 0.01
CVE-2019-4048
LOW
IBM Maximo Asset Management 7.6 - Unprotected User Data Exposure via Physical Access
Jun 06, 2019
CVSS 2.1
EPSS 0.00
CVE-2019-4264
MEDIUM
IBM QRadar SIEM <7.2.8 - Info Disclosure
May 29, 2019
CVSS 5.9
EPSS 0.01
CVE-2019-4256
HIGH
IBM API Connect 5.0.0.0-5.0.8.6 - Inadequate Encryption Strength
May 29, 2019
CVSS 7.5
EPSS 0.01
CVE-2019-4184
MEDIUM
IBM Jazz Reporting Service 6.0-6.0.6.1 - Cross-Site Scripting
May 29, 2019
CVSS 5.4
EPSS 0.01
CVE-2019-4139
MEDIUM
IBM Cognos Analytics 11.0, 11.1.0, and 11.1.1 - Cross-Site Scripting
May 29, 2019
CVSS 5.4
EPSS 0.01
CVE-2019-4138
MEDIUM
IBM Spectrum Control 5.2.13-5.3.0.1 - Sensitive Information Exposure via Missing HSTS Enforcement
May 29, 2019
CVSS 5.9
EPSS 0.02
CVE-2019-4137
MEDIUM
IBM Spectrum Control 5.2.13-5.2.17.1 - Cross-Site Scripting in Web UI
May 29, 2019
CVSS 6.1
EPSS 0.01
CVE-2019-4078
HIGH
IBM WebSphere MQ 8.0.0.0-8.0.0.9 & 9.0.0.0-9.1.1 Privilege Escalation via Directory Permissions
May 23, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-4039
MEDIUM
IBM WebSphere MQ 8.0.0.0-8.0.0.9 and 9.0.0.0-9.1.1 - Denial of Service in Error Log Reporting System
May 23, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-4293
MEDIUM
IBM Storwize V7000 Unified - Info Disclosure
May 20, 2019
CVSS 5.3
EPSS 0.02
CVE-2019-4058
MEDIUM
IBM BigFix <9.2,9.5 - Info Disclosure
May 20, 2019
CVSS 6.5
EPSS 0.01
CVE-2019-4011
MEDIUM
IBM BigFix Platform 9.2-9.5 - Cross-Site Scripting in Web UI
May 20, 2019
CVSS 5.4
EPSS 0.01
CVE-2019-4279
CRITICAL
IBM WebSphere App Server <9.0 - RCE
May 17, 2019
CVSS 9.8
EPSS 0.80
CVE-2019-4119
MEDIUM
IBM Cloud Private Kubernetes API server <3.1.2 - SSRF
May 17, 2019
CVSS 5.3
EPSS 0.01
CVE-2019-4259
MEDIUM
IBM Spectrum Scale <5.0.0 - Info Disclosure
May 13, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-4204
MEDIUM
IBM Business Automation Workflow 18.0.0.0-18.0.0.2, 19.0.0.1 - Cross-Site Scripting
May 10, 2019
CVSS 5.4
EPSS 0.01
CVE-2019-4072
MEDIUM
IBM Spectrum Control 5.2.1-5.2.17 - Insufficient Session Expiration
May 09, 2019
CVSS 6.3
EPSS 0.01
Products
websphere_application_server 465
aix 400
db2 339
rational_quality_manager 202
sterling_b2b_integrator 195
qradar_security_information_and_event_manager 190
infosphere_information_server 189
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 104
sterling_file_gateway 93
vios 92
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
api_connect 81
rational_software_architect_design_manager 81
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
i 65
smartcloud_control_desk 65
Quick Filters