ibm
8,153 tracked vulnerabilities.
CVE-2025-1112
MEDIUM
IBM OpenPages with Watson <9.0 - Info Disclosure
Jul 09, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-27369
MEDIUM
IBM OpenPages with Watson 8.3-9.0 - Info Disclosure
Jul 08, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-27367
MEDIUM
IBM OpenPages with Watson 8.3-9.0 - Auth Bypass
Jul 08, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-3630
MEDIUM
IBM Sterling B2B Integrator & File Gateway 6.0.0.0-6.1.2.6, 6.2.0.0-6.2.0.4 Authenticated Stored XSS
Jul 08, 2025
CVSS 6.4
EPSS 0.00
CVE-2025-2827
MEDIUM
IBM Sterling File Gateway <6.1.2.6 - Info Disclosure
Jul 08, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-2793
MEDIUM
IBM Sterling B2B Integrator & File Gateway 6.0.0.0-6.1.2.6, 6.2.0.0-6.2.0.4 Authenticated Stored XSS
Jul 08, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-36014
HIGH
IBM Integration Bus for z/OS 10.1.0.0-10.1.0.5 - Code Injection via IIB Install Directory
Jul 07, 2025
CVSS 8.2
EPSS 0.00
CVE-2025-1351
MEDIUM
IBM Storage Virtualize 8.5-8.7 - Privilege Escalation via Login Race Condition
Jul 07, 2025
CVSS 6.7
EPSS 0.00
CVE-2025-36056
MEDIUM
IBM System Storage Virtualization Engine TS7700 - Authenticated Stored Cross-Site Scripting
Jul 01, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-2141
MEDIUM
IBM System Storage Virtualization Engine - XSS
Jul 01, 2025
CVSS 6.1
EPSS 0.00
CVE-2025-2895
MEDIUM
IBM Cloud Pak System 2.3.3.6-2.3.4.1 - Cross-Site Scripting
Jun 30, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-1991
HIGH
IBM Informix Dynamic Server <15.0 - DoS
Jun 28, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-36027
MEDIUM
IBM Datacap 9.1.7-9.1.9 - Clickjacking
Jun 28, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-36026
MEDIUM
IBM Datacap <9.1.7-9.1.9 - Open Redirect
Jun 28, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-36034
MEDIUM
IBM InfoSphere Information Server 11.7 - Cleartext Transmission of Sensitive Information in API Requests
Jun 26, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-36038
CRITICAL
IBM WebSphere Application Server 8.5-8.5.5.28 - Remote Code Execution via Deserialization
Jun 25, 2025
CVSS 9.0
EPSS 0.01
CVE-2025-36004
HIGH
IBM i 7.2-7.5 - Privilege Escalation via Unqualified Library Call in Facsimile Support
Jun 25, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-0966
HIGH
IBM InfoSphere Information Server 11.7 - SQL Injection
Jun 25, 2025
CVSS 7.6
EPSS 0.00
CVE-2025-3629
MEDIUM
IBM InfoSphere Information Server <11.7.1.6 - Privilege Escalation
Jun 21, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-3221
HIGH
IBM InfoSphere Information Server 11.7.0.0-11.7.1.6 - Denial of Service via Insufficient Request Resource Validation
Jun 21, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-36016
MEDIUM
IBM Process Mining 2.0.1 IF001 and 2.0.1 - Open Redirect
Jun 21, 2025
CVSS 6.8
EPSS 0.00
CVE-2025-3319
HIGH
IBM Spectrum Protect Server <8.1.27 - Auth Bypass
Jun 20, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-36050
MEDIUM
IBM QRadar SIEM 7.5-7.5.0 Update Package 12 - Sensitive Information Disclosure in Log Files
Jun 19, 2025
CVSS 6.2
EPSS 0.00
CVE-2025-33121
HIGH
IBM QRadar SIEM 7.5 to 7.5.0-12 - XML External Entity Injection
Jun 19, 2025
CVSS 7.1
EPSS 0.01
CVE-2025-33117
CRITICAL
IBM QRadar SIEM <7.5.0 Update Package 12 - Privilege Escalation
Jun 19, 2025
CVSS 9.1
EPSS 0.00
Products
websphere_application_server 444
aix 393
db2 327
rational_quality_manager 202
sterling_b2b_integrator 195
infosphere_information_server 188
qradar_security_information_and_event_manager 187
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 102
sterling_file_gateway 93
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
vios 85
rational_software_architect_design_manager 81
api_connect 79
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
smartcloud_control_desk 65
urbancode_deploy 63
Quick Filters