ibm

8,153 tracked vulnerabilities.

CVE-2025-1349 MEDIUM
IBM Sterling B2B Integrator and Sterling File Gateway 6.0.0.0-6.1.2.6 and 6.2.0.0-6.2.0.4 - Stored Cross-Site Scripting
Jun 18, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-1348 MEDIUM
IBM Sterling B2B Integrator & File Gateway <6.1.2.6, <6.2.0.4 - Inf...
Jun 18, 2025
CVSS 4.0
EPSS 0.00
CVE-2025-36049 HIGH
IBM webMethods Integration Server 10.5, 10.7, 10.11, 10.15 - Authenticated XML External Entity Injection
Jun 18, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-36048 HIGH
IBM webMethods Integration Server <10.15 - Privilege Escalation
Jun 18, 2025
CVSS 7.2
EPSS 0.01
CVE-2025-33122 HIGH
IBM i 7.2-7.6 - Privilege Escalation via Unqualified Library Call in Advanced Job Scheduler
Jun 17, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-36041 MEDIUM
IBM MQ Operator 2.0.0-2.0.29, 3.1.0-3.1.3, 3.2.0-3.2.12 - Improper Certificate Validation in Native HA CRR
Jun 15, 2025
CVSS 4.7
EPSS 0.00
CVE-2025-1411 HIGH
IBM Security Verify Directory Container <10.0.3.1 - Privilege Escal...
Jun 15, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-33108 HIGH
IBM Backup, Recovery and Media Services for i 7.4-7.5 - Privilege E...
Jun 14, 2025
CVSS 8.5
EPSS 0.00
CVE-2025-25032 HIGH
IBM Cognos Analytics 11.2.0-11.2.4 12.0.0-12.0.4 - Authenticated Denial of Service via Memory Exhaustion
Jun 11, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-0923 MEDIUM
IBM Cognos Analytics <12.0.4 - Info Disclosure
Jun 11, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-0917 MEDIUM
IBM Cognos Analytics 11.2.0-11.2.4, 12.0.0-12.0.4 - Stored Cross-Site Scripting
Jun 11, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-3473 MEDIUM
IBM Security Guardium 12.1 - Privilege Escalation
Jun 11, 2025
CVSS 6.7
EPSS 0.00
CVE-2025-0163 MEDIUM
IBM Security Verify Access Appliance & Docker <10.0.9 - Info Disclo...
Jun 11, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-33112 HIGH
IBM AIX 7.3 & VIOS 4.1.1 - Code Injection
Jun 10, 2025
CVSS 8.4
EPSS 0.00
CVE-2025-25022 CRITICAL
IBM QRadar Suite Software <1.11.2.0 & IBM Cloud Pak for Security <1...
Jun 03, 2025
CVSS 9.6
EPSS 0.00
CVE-2025-25021 HIGH
IBM QRadar Suite Software <1.11.2.0 - Code Injection
Jun 03, 2025
CVSS 7.2
EPSS 0.00
CVE-2025-25020 MEDIUM
IBM Cloud Pak for Security 1.10.0.0-1.10.11.0 & QRadar Suite 1.10.12.0-1.11.2.0 - Authenticated DoS via API
Jun 03, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-25019 MEDIUM
IBM QRadar Suite Software <1.11.2.0 - Info Disclosure
Jun 03, 2025
CVSS 4.8
EPSS 0.00
CVE-2025-1334 MEDIUM
IBM QRadar Suite Software <1.11.2.0-IBM Cloud Pak for Security <1.1...
Jun 03, 2025
CVSS 4.0
EPSS 0.00
CVE-2025-33005 MEDIUM
IBM Planning Analytics Local <2.1 - Privilege Escalation
Jun 01, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-33004 MEDIUM
IBM Planning Analytics Local <2.1 - Privilege Escalation
Jun 01, 2025
CVSS 6.5
EPSS 0.01
CVE-2025-2896 MEDIUM
IBM Planning Analytics Local 2.0 and 2.1 - Authenticated Stored Cross-Site Scripting
Jun 01, 2025
CVSS 4.8
EPSS 0.00
CVE-2025-25044 MEDIUM
IBM Planning Analytics Local <2.2 - XSS
Jun 01, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-1499 MEDIUM
IBM InfoSphere Information Server 11.7 - Cleartext Storage of Sensitive Information in Database Credential File
Jun 01, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-3050 MEDIUM
IBM Db2 11.5.0-11.5.9 and 12.1.0-12.1.1 - Authenticated Denial of Service via Q Replication
May 29, 2025
CVSS 5.3
EPSS 0.00