ibm
8,153 tracked vulnerabilities.
CVE-2025-36039
MEDIUM
IBM Aspera Faspex <5.0.12.1 - Privilege Escalation
Jul 31, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-36071
MEDIUM
IBM Db2 11.5.0-11.5.9 and 12.1.0-12.1.2 - Denial of Service via Specially Crafted Query
Jul 29, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-33114
MEDIUM
IBM Db2 12.1.0-12.1.2 - Denial of Service via Specially Crafted Query
Jul 29, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-33092
HIGH
IBM Db2 for Linux <12.1.2 - Buffer Overflow
Jul 29, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-36010
MEDIUM
IBM Db2 12.1.0-12.1.2 - Unauthenticated Denial of Service via Deadlock
Jul 29, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-2533
MEDIUM
IBM Db2 12.1.0-12.1.2 - Denial of Service via Crafted Query
Jul 29, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-36005
MEDIUM
IBM MQ Operator 2.0.0-2.0.29, 3.2.0-3.2.13, 3.5.1 - Improper Certificate Validation
Jul 24, 2025
CVSS 5.9
EPSS 0.00
CVE-2025-33109
HIGH
IBM i 7.2-7.6 - Privilege Escalation via Invalid Database Authority Check
Jul 24, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-33013
MEDIUM
IBM MQ Operator 2.0.0-2.0.29, 3.2.0-3.2.13, 3.5.1-3.6.0 - Information Disclosure via Heap Memory
Jul 24, 2025
CVSS 6.2
EPSS 0.00
CVE-2025-36117
MEDIUM
IBM Db2 Mirror for i 7.4-7.6 - Privilege Escalation
Jul 23, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-36116
MEDIUM
IBM Db2 Mirror for i 7.4-7.6 - Unauthenticated Cross-Site WebSocket Hijacking
Jul 23, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-33077
HIGH
IBM Engineering Systems Design Rhapsody <10.0.1 - Buffer Overflow
Jul 23, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-33076
HIGH
IBM Engineering Systems Design Rhapsody <10.0.1 - Buffer Overflow
Jul 23, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-33020
MEDIUM
IBM Engineering Systems Design Rhapsody <10.0.1 - Info Disclosure
Jul 23, 2025
CVSS 5.9
EPSS 0.00
CVE-2025-36106
MEDIUM
IBM Cognos Analytics Mobile 1.1.0-1.1.22 - Inadequate Encryption Strength via AFNetworking Library
Jul 21, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-36062
MEDIUM
IBM Cognos Analytics Mobile 1.1.0-1.1.22 - Sensitive Data Exposure via Unencrypted Network Traffic
Jul 21, 2025
CVSS 5.9
EPSS 0.00
CVE-2025-36057
MEDIUM
IBM Cognos Analytics Mobile 1.1.0-1.1.22 - Authentication Bypass via Local Authentication Framework
Jul 21, 2025
CVSS 5.2
EPSS 0.00
CVE-2025-36107
MEDIUM
IBM Cognos Analytics Mobile 1.1.0-1.1.22 - Cleartext Transmission of Sensitive Information
Jul 21, 2025
CVSS 5.9
EPSS 0.00
CVE-2025-33014
MEDIUM
IBM Sterling B2B Integrator & File Gateway <6.1.2.7, <6.2.0.4 - Inf...
Jul 18, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-36097
HIGH
IBM WebSphere Application Server 9.0.0.0-9.0.5.23 and 17.0.0.3-25.0.0.7 DoS via Stack Overflow
Jul 16, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-33097
MEDIUM
IBM QRadar SIEM 7.5-7.5.0 UP12 IF02 - XSS
Jul 15, 2025
CVSS 6.4
EPSS 0.00
CVE-2025-36104
MEDIUM
IBM Storage Scale 5.2.3.0 and 5.2.3.1 - Authenticated Sensitive Information Exposure via SMB Inherited Permissions
Jul 12, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-3631
MEDIUM
IBM MQ Appliance 9.3.2-9.3.5.1 and 9.4.0.0-9.4.0.11 - Use-After-Free in AMQRMPPA Channel Process
Jul 11, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-36090
MEDIUM
IBM Analytics Content Hub 2.0-2.3 - Information Disclosure via Detailed Technical Error Message
Jul 10, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-2670
MEDIUM
IBM OpenPages 9.0 - Info Disclosure
Jul 09, 2025
CVSS 4.3
EPSS 0.00
Products
websphere_application_server 444
aix 393
db2 327
rational_quality_manager 202
sterling_b2b_integrator 195
infosphere_information_server 188
qradar_security_information_and_event_manager 187
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 102
sterling_file_gateway 93
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
vios 85
rational_software_architect_design_manager 81
api_connect 79
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
smartcloud_control_desk 65
urbancode_deploy 63
Quick Filters