ibm

8,320 tracked vulnerabilities.

CVE-2019-4218 LOW
IBM Security Information Queue 1.0.0-1.0.2 - Unprotected Local File Exposure
Jun 06, 2019
CVSS 3.3
EPSS 0.00
CVE-2019-4217 MEDIUM
IBM Security Information Queue <1.0.3 - CSRF
Jun 06, 2019
CVSS 6.1
EPSS 0.01
CVE-2019-4162 HIGH
IBM Security Information Queue 1.0.0-1.0.2 - Cleartext Transmission of Sensitive Information
Jun 06, 2019
CVSS 7.5
EPSS 0.01
CVE-2019-4161 LOW
IBM Security Information Queue <1.0.3 - Info Disclosure
Jun 06, 2019
CVSS 3.3
EPSS 0.00
CVE-2019-4220 MEDIUM
IBM InfoSphere Information Server 11.7.1.0 - Use of Hard-coded Encryption Key
Jun 06, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-4201 MEDIUM
IBM Jazz for Service Management 1.1.3-1.1.3.2 - Open Redirect
Jun 06, 2019
CVSS 6.1
EPSS 0.01
CVE-2019-4185 HIGH
IBM InfoSphere Information Server 11.7.1 - Privilege Escalation
Jun 06, 2019
CVSS 8.3
EPSS 0.01
CVE-2019-4056 MEDIUM
IBM Maximo Asset Management 7.6 - Unrestricted Upload of File with Dangerous Type
Jun 06, 2019
CVSS 4.3
EPSS 0.01
CVE-2019-4048 LOW
IBM Maximo Asset Management 7.6 - Unprotected User Data Exposure via Physical Access
Jun 06, 2019
CVSS 2.1
EPSS 0.00
CVE-2019-4264 MEDIUM
IBM QRadar SIEM <7.2.8 - Info Disclosure
May 29, 2019
CVSS 5.9
EPSS 0.01
CVE-2019-4256 HIGH
IBM API Connect 5.0.0.0-5.0.8.6 - Inadequate Encryption Strength
May 29, 2019
CVSS 7.5
EPSS 0.01
CVE-2019-4184 MEDIUM
IBM Jazz Reporting Service 6.0-6.0.6.1 - Cross-Site Scripting
May 29, 2019
CVSS 5.4
EPSS 0.01
CVE-2019-4139 MEDIUM
IBM Cognos Analytics 11.0, 11.1.0, and 11.1.1 - Cross-Site Scripting
May 29, 2019
CVSS 5.4
EPSS 0.01
CVE-2019-4138 MEDIUM
IBM Spectrum Control 5.2.13-5.3.0.1 - Sensitive Information Exposure via Missing HSTS Enforcement
May 29, 2019
CVSS 5.9
EPSS 0.02
CVE-2019-4137 MEDIUM
IBM Spectrum Control 5.2.13-5.2.17.1 - Cross-Site Scripting in Web UI
May 29, 2019
CVSS 6.1
EPSS 0.01
CVE-2019-4078 HIGH
IBM WebSphere MQ 8.0.0.0-8.0.0.9 & 9.0.0.0-9.1.1 Privilege Escalation via Directory Permissions
May 23, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-4039 MEDIUM
IBM WebSphere MQ 8.0.0.0-8.0.0.9 and 9.0.0.0-9.1.1 - Denial of Service in Error Log Reporting System
May 23, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-4293 MEDIUM
IBM Storwize V7000 Unified - Info Disclosure
May 20, 2019
CVSS 5.3
EPSS 0.02
CVE-2019-4058 MEDIUM
IBM BigFix <9.2,9.5 - Info Disclosure
May 20, 2019
CVSS 6.5
EPSS 0.01
CVE-2019-4011 MEDIUM
IBM BigFix Platform 9.2-9.5 - Cross-Site Scripting in Web UI
May 20, 2019
CVSS 5.4
EPSS 0.01
CVE-2019-4279 CRITICAL
IBM WebSphere App Server <9.0 - RCE
May 17, 2019
CVSS 9.8
EPSS 0.80
CVE-2019-4119 MEDIUM
IBM Cloud Private Kubernetes API server <3.1.2 - SSRF
May 17, 2019
CVSS 5.3
EPSS 0.01
CVE-2019-4259 MEDIUM
IBM Spectrum Scale <5.0.0 - Info Disclosure
May 13, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-4204 MEDIUM
IBM Business Automation Workflow 18.0.0.0-18.0.0.2, 19.0.0.1 - Cross-Site Scripting
May 10, 2019
CVSS 5.4
EPSS 0.01
CVE-2019-4072 MEDIUM
IBM Spectrum Control 5.2.1-5.2.17 - Insufficient Session Expiration
May 09, 2019
CVSS 6.3
EPSS 0.01