ibm
8,321 tracked vulnerabilities.
CVE-2016-3027
MEDIUM
IBM Security Access Manager for Web 8.0 - XML External Entity Injection
Feb 01, 2017
CVSS 6.5
EPSS 0.01
CVE-2016-3024
MEDIUM
IBM Security Access Manager for Web 8.0 - Unauthorized Exposure of Sensitive Information via Local Web Page Storage
Feb 01, 2017
CVSS 4.0
EPSS 0.00
CVE-2016-3023
MEDIUM
IBM Security Access Manager for Web 7.0 - Unauthenticated Exposure of Sensitive Information via Invalid File Names
Feb 01, 2017
CVSS 5.3
EPSS 0.01
CVE-2016-3022
MEDIUM
IBM Security Access Manager for Web - Info Disclosure
Feb 01, 2017
CVSS 6.5
EPSS 0.02
CVE-2016-3021
LOW
IBM Security Access Manager for Web 7.0 - Authenticated Sensitive Information Exposure via Error Message
Feb 01, 2017
CVSS 2.7
EPSS 0.01
CVE-2016-3018
MEDIUM
IBM Security Access Manager for Web - Stored Cross-Site Scripting
Feb 01, 2017
CVSS 6.1
EPSS 0.01
CVE-2016-3017
HIGH
IBM Security Access Manager for Web - Info Disclosure
Feb 01, 2017
CVSS 7.5
EPSS 0.02
CVE-2016-3016
MEDIUM
IBM Security Access Manager for Web 7.0 Firmware - Authenticated Code Execution via Unverified Update Processing
Feb 01, 2017
CVSS 4.4
EPSS 0.00
CVE-2016-2987
MEDIUM
IBM Rational DOORS Next Generation - Exposure of Sensitive Information via Administrative Deployment Parameters
Feb 01, 2017
CVSS 4.3
EPSS 0.01
CVE-2016-2939
MEDIUM
IBM iNotes - Stored Cross-Site Scripting
Feb 01, 2017
CVSS 6.1
EPSS 0.01
CVE-2016-2938
MEDIUM
IBM iNotes - Stored Cross-Site Scripting
Feb 01, 2017
CVSS 6.1
EPSS 0.01
CVE-2016-2908
CRITICAL
IBM Security Access Manager 9.0 and 8.0 Firmware - XML External Entity Injection
Feb 01, 2017
CVSS 9.1
EPSS 0.03
CVE-2016-0396
HIGH
IBM Tivoli Endpoint Manager - Privilege Escalation
Feb 01, 2017
CVSS 8.1
EPSS 0.01
CVE-2016-0394
LOW
IBM Integration Bus - Privilege Escalation
Feb 01, 2017
CVSS 3.3
EPSS 0.00
CVE-2016-0297
LOW
IBM Tivoli Endpoint Manager - Info Disclosure
Feb 01, 2017
CVSS 3.7
EPSS 0.01
CVE-2016-0296
LOW
IBM Tivoli Endpoint Manager - Info Disclosure
Feb 01, 2017
CVSS 3.3
EPSS 0.00
CVE-2016-0265
MEDIUM
IBM Campaign - Cross-Site Scripting via Crafted URL
Feb 01, 2017
CVSS 5.4
EPSS 0.01
CVE-2016-9879
HIGH
Pivotal Spring Security <4.2.1 - Auth Bypass
Jan 06, 2017
CVSS 7.5
EPSS 0.01
CVE-2016-3055
HIGH
IBM FileNet Workplace 4.0.2 - Authenticated XML External Entity Injection
Dec 01, 2016
CVSS 8.1
EPSS 0.01
CVE-2016-3047
MEDIUM
IBM FileNet Workplace 4.0.2-4.0.2.14 IF001 - Authenticated Open Redirect
Dec 01, 2016
CVSS 6.8
EPSS 0.01
CVE-2016-3044
MEDIUM
IBM PowerKVM 2.1 before 2.1.1.3-65.10 and 3.1 before 3.1.0.2 - Denial of Service via Guest OS Vectors
Dec 01, 2016
CVSS 6.5
EPSS 0.00
CVE-2016-3033
HIGH
IBM AppScan Source 8.7-9.0.3.3 - Authenticated XML External Entity Injection
Dec 01, 2016
CVSS 8.1
EPSS 0.01
CVE-2016-3012
HIGH
IBM API Connect < 5.0.3.0 - Exposure of Sensitive Information via Internal Credentials
Dec 01, 2016
CVSS 7.5
EPSS 0.02
CVE-2016-2994
MEDIUM
IBM UrbanCode Deploy 6.2.x - Authenticated Cross-Site Scripting
Dec 01, 2016
CVSS 5.4
EPSS 0.01
CVE-2016-2991
MEDIUM
IBM Lotus Protector for Mail Security 2.8.0.0-2.8.1.0 - Authenticated Cross-Site Scripting
Dec 01, 2016
CVSS 5.4
EPSS 0.01
Products
websphere_application_server 465
aix 400
db2 339
rational_quality_manager 202
sterling_b2b_integrator 195
qradar_security_information_and_event_manager 190
infosphere_information_server 189
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 104
sterling_file_gateway 93
vios 92
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
api_connect 81
rational_software_architect_design_manager 81
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
i 65
smartcloud_control_desk 65
Quick Filters