ibm

8,321 tracked vulnerabilities.

CVE-2016-3027 MEDIUM
IBM Security Access Manager for Web 8.0 - XML External Entity Injection
Feb 01, 2017
CVSS 6.5
EPSS 0.01
CVE-2016-3024 MEDIUM
IBM Security Access Manager for Web 8.0 - Unauthorized Exposure of Sensitive Information via Local Web Page Storage
Feb 01, 2017
CVSS 4.0
EPSS 0.00
CVE-2016-3023 MEDIUM
IBM Security Access Manager for Web 7.0 - Unauthenticated Exposure of Sensitive Information via Invalid File Names
Feb 01, 2017
CVSS 5.3
EPSS 0.01
CVE-2016-3022 MEDIUM
IBM Security Access Manager for Web - Info Disclosure
Feb 01, 2017
CVSS 6.5
EPSS 0.02
CVE-2016-3021 LOW
IBM Security Access Manager for Web 7.0 - Authenticated Sensitive Information Exposure via Error Message
Feb 01, 2017
CVSS 2.7
EPSS 0.01
CVE-2016-3018 MEDIUM
IBM Security Access Manager for Web - Stored Cross-Site Scripting
Feb 01, 2017
CVSS 6.1
EPSS 0.01
CVE-2016-3017 HIGH
IBM Security Access Manager for Web - Info Disclosure
Feb 01, 2017
CVSS 7.5
EPSS 0.02
CVE-2016-3016 MEDIUM
IBM Security Access Manager for Web 7.0 Firmware - Authenticated Code Execution via Unverified Update Processing
Feb 01, 2017
CVSS 4.4
EPSS 0.00
CVE-2016-2987 MEDIUM
IBM Rational DOORS Next Generation - Exposure of Sensitive Information via Administrative Deployment Parameters
Feb 01, 2017
CVSS 4.3
EPSS 0.01
CVE-2016-2939 MEDIUM
IBM iNotes - Stored Cross-Site Scripting
Feb 01, 2017
CVSS 6.1
EPSS 0.01
CVE-2016-2938 MEDIUM
IBM iNotes - Stored Cross-Site Scripting
Feb 01, 2017
CVSS 6.1
EPSS 0.01
CVE-2016-2908 CRITICAL
IBM Security Access Manager 9.0 and 8.0 Firmware - XML External Entity Injection
Feb 01, 2017
CVSS 9.1
EPSS 0.03
CVE-2016-0396 HIGH
IBM Tivoli Endpoint Manager - Privilege Escalation
Feb 01, 2017
CVSS 8.1
EPSS 0.01
CVE-2016-0394 LOW
IBM Integration Bus - Privilege Escalation
Feb 01, 2017
CVSS 3.3
EPSS 0.00
CVE-2016-0297 LOW
IBM Tivoli Endpoint Manager - Info Disclosure
Feb 01, 2017
CVSS 3.7
EPSS 0.01
CVE-2016-0296 LOW
IBM Tivoli Endpoint Manager - Info Disclosure
Feb 01, 2017
CVSS 3.3
EPSS 0.00
CVE-2016-0265 MEDIUM
IBM Campaign - Cross-Site Scripting via Crafted URL
Feb 01, 2017
CVSS 5.4
EPSS 0.01
CVE-2016-9879 HIGH
Pivotal Spring Security <4.2.1 - Auth Bypass
Jan 06, 2017
CVSS 7.5
EPSS 0.01
CVE-2016-3055 HIGH
IBM FileNet Workplace 4.0.2 - Authenticated XML External Entity Injection
Dec 01, 2016
CVSS 8.1
EPSS 0.01
CVE-2016-3047 MEDIUM
IBM FileNet Workplace 4.0.2-4.0.2.14 IF001 - Authenticated Open Redirect
Dec 01, 2016
CVSS 6.8
EPSS 0.01
CVE-2016-3044 MEDIUM
IBM PowerKVM 2.1 before 2.1.1.3-65.10 and 3.1 before 3.1.0.2 - Denial of Service via Guest OS Vectors
Dec 01, 2016
CVSS 6.5
EPSS 0.00
CVE-2016-3033 HIGH
IBM AppScan Source 8.7-9.0.3.3 - Authenticated XML External Entity Injection
Dec 01, 2016
CVSS 8.1
EPSS 0.01
CVE-2016-3012 HIGH
IBM API Connect < 5.0.3.0 - Exposure of Sensitive Information via Internal Credentials
Dec 01, 2016
CVSS 7.5
EPSS 0.02
CVE-2016-2994 MEDIUM
IBM UrbanCode Deploy 6.2.x - Authenticated Cross-Site Scripting
Dec 01, 2016
CVSS 5.4
EPSS 0.01
CVE-2016-2991 MEDIUM
IBM Lotus Protector for Mail Security 2.8.0.0-2.8.1.0 - Authenticated Cross-Site Scripting
Dec 01, 2016
CVSS 5.4
EPSS 0.01