ibm
8,153 tracked vulnerabilities.
CVE-2025-1349
MEDIUM
IBM Sterling B2B Integrator and Sterling File Gateway 6.0.0.0-6.1.2.6 and 6.2.0.0-6.2.0.4 - Stored Cross-Site Scripting
Jun 18, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-1348
MEDIUM
IBM Sterling B2B Integrator & File Gateway <6.1.2.6, <6.2.0.4 - Inf...
Jun 18, 2025
CVSS 4.0
EPSS 0.00
CVE-2025-36049
HIGH
IBM webMethods Integration Server 10.5, 10.7, 10.11, 10.15 - Authenticated XML External Entity Injection
Jun 18, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-36048
HIGH
IBM webMethods Integration Server <10.15 - Privilege Escalation
Jun 18, 2025
CVSS 7.2
EPSS 0.01
CVE-2025-33122
HIGH
IBM i 7.2-7.6 - Privilege Escalation via Unqualified Library Call in Advanced Job Scheduler
Jun 17, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-36041
MEDIUM
IBM MQ Operator 2.0.0-2.0.29, 3.1.0-3.1.3, 3.2.0-3.2.12 - Improper Certificate Validation in Native HA CRR
Jun 15, 2025
CVSS 4.7
EPSS 0.00
CVE-2025-1411
HIGH
IBM Security Verify Directory Container <10.0.3.1 - Privilege Escal...
Jun 15, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-33108
HIGH
IBM Backup, Recovery and Media Services for i 7.4-7.5 - Privilege E...
Jun 14, 2025
CVSS 8.5
EPSS 0.00
CVE-2025-25032
HIGH
IBM Cognos Analytics 11.2.0-11.2.4 12.0.0-12.0.4 - Authenticated Denial of Service via Memory Exhaustion
Jun 11, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-0923
MEDIUM
IBM Cognos Analytics <12.0.4 - Info Disclosure
Jun 11, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-0917
MEDIUM
IBM Cognos Analytics 11.2.0-11.2.4, 12.0.0-12.0.4 - Stored Cross-Site Scripting
Jun 11, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-3473
MEDIUM
IBM Security Guardium 12.1 - Privilege Escalation
Jun 11, 2025
CVSS 6.7
EPSS 0.00
CVE-2025-0163
MEDIUM
IBM Security Verify Access Appliance & Docker <10.0.9 - Info Disclo...
Jun 11, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-33112
HIGH
IBM AIX 7.3 & VIOS 4.1.1 - Code Injection
Jun 10, 2025
CVSS 8.4
EPSS 0.00
CVE-2025-25022
CRITICAL
IBM QRadar Suite Software <1.11.2.0 & IBM Cloud Pak for Security <1...
Jun 03, 2025
CVSS 9.6
EPSS 0.00
CVE-2025-25021
HIGH
IBM QRadar Suite Software <1.11.2.0 - Code Injection
Jun 03, 2025
CVSS 7.2
EPSS 0.00
CVE-2025-25020
MEDIUM
IBM Cloud Pak for Security 1.10.0.0-1.10.11.0 & QRadar Suite 1.10.12.0-1.11.2.0 - Authenticated DoS via API
Jun 03, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-25019
MEDIUM
IBM QRadar Suite Software <1.11.2.0 - Info Disclosure
Jun 03, 2025
CVSS 4.8
EPSS 0.00
CVE-2025-1334
MEDIUM
IBM QRadar Suite Software <1.11.2.0-IBM Cloud Pak for Security <1.1...
Jun 03, 2025
CVSS 4.0
EPSS 0.00
CVE-2025-33005
MEDIUM
IBM Planning Analytics Local <2.1 - Privilege Escalation
Jun 01, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-33004
MEDIUM
IBM Planning Analytics Local <2.1 - Privilege Escalation
Jun 01, 2025
CVSS 6.5
EPSS 0.01
CVE-2025-2896
MEDIUM
IBM Planning Analytics Local 2.0 and 2.1 - Authenticated Stored Cross-Site Scripting
Jun 01, 2025
CVSS 4.8
EPSS 0.00
CVE-2025-25044
MEDIUM
IBM Planning Analytics Local <2.2 - XSS
Jun 01, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-1499
MEDIUM
IBM InfoSphere Information Server 11.7 - Cleartext Storage of Sensitive Information in Database Credential File
Jun 01, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-3050
MEDIUM
IBM Db2 11.5.0-11.5.9 and 12.1.0-12.1.1 - Authenticated Denial of Service via Q Replication
May 29, 2025
CVSS 5.3
EPSS 0.00
Products
websphere_application_server 444
aix 393
db2 327
rational_quality_manager 202
sterling_b2b_integrator 195
infosphere_information_server 188
qradar_security_information_and_event_manager 187
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 102
sterling_file_gateway 93
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
vios 85
rational_software_architect_design_manager 81
api_connect 79
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
smartcloud_control_desk 65
urbancode_deploy 63
Quick Filters