ibm

8,321 tracked vulnerabilities.

CVE-2015-1955
IBM WebSphere MQ Light - Denial of Service via Crafted Authentication Data
Aug 03, 2015
EPSS 0.02
CVE-2015-1904
IBM Business Process Manager - Access Control
Aug 01, 2015
EPSS 0.01
CVE-2015-4945
IBM Maximo Anywhere 7.5.1-7.5.1.2 - Unauthenticated Sensitive Information Exposure via Passcode Bypass
Jul 26, 2015
EPSS 0.01
CVE-2015-1906
IBM Business Process Manager XSS via REST API
Jul 21, 2015
EPSS 0.01
CVE-2015-1905
IBM Business Process Manager Authenticated Access Control Bypass via REST API
Jul 21, 2015
EPSS 0.01
CVE-2015-1984
IBM InfoSphere MDM Collaborative Edition 9.1-11.4 < FP03 - Sensitive Info Exposure via Profile Bypass
Jul 20, 2015
EPSS 0.01
CVE-2015-1982
IBM InfoSphere MDM Collaborative Edition 9.1-11.4 < FP03 - Sensitive Info Exposure
Jul 20, 2015
EPSS 0.01
CVE-2015-1980
IBM InfoSphere Master Data Management Collaborative Edition 9.1-11.4 < FP03 Authenticated Clickjacking
Jul 20, 2015
EPSS 0.01
CVE-2015-1979
IBM Case Manager 5.2.1 - Authenticated Cross-Site Scripting in Error Dialog
Jul 20, 2015
EPSS 0.01
CVE-2015-1968
IBM InfoSphere MDM Collaborative Edition 9.1-11.4 Authenticated XSS via Crafted URL
Jul 20, 2015
EPSS 0.01
CVE-2015-1935
IBM DB2 9.7-10.5 - Remote Code Execution or Denial of Service
Jul 20, 2015
EPSS 0.04
CVE-2015-1922
IBM DB2 9.7-10.5 - Authenticated Table Row Deletion via Data Movement
Jul 20, 2015
EPSS 0.02
CVE-2015-1883
IBM DB2 9.7-9.7 FP10, 9.8-9.8 FP5, 10.1 < FP5, 10.5-10.5 FP5 - Sensitive Information Exposure via Stored Procedure
Jul 20, 2015
EPSS 0.02
CVE-2015-0157
IBM DB2 9.7-10.5 FP5 Authenticated DoS via SQL Scalar Function
Jul 20, 2015
EPSS 0.03
CVE-2015-0130
IBM Rational DOORS Next Generation 4.x < 4.0.7 IF6 and 5.x < 5.0.2 IF5 - Cross-Site Scripting
Jul 20, 2015
EPSS 0.01
CVE-2015-1946
IBM WebSphere Application Server 8.5 < 8.5.5.6 and WebSphere Virtual Enterprise 7.0 < 7.0.0.6 - Privilege Escalation
Jul 14, 2015
EPSS 0.00
CVE-2015-1936
IBM WebSphere Application Server 8.0.0-8.0.0.10 and 8.5-8.5.5.5 - Session Hijacking via JSESSIONID
Jul 14, 2015
EPSS 0.02
CVE-2015-1927
IBM WebSphere Application Server 7.0.0-7.0.0.38, 8.0.0-8.0.0.10, 8.5-8.5.5.5 - Unauthenticated Privileged Access
Jul 14, 2015
EPSS 0.02
CVE-2015-1944
IBM WebSphere Portal 8.0.0-8.5.0 - Authenticated Cross-Site Scripting via Crafted URL
Jul 14, 2015
EPSS 0.01
CVE-2015-1917
IBM WebSphere Portal 6.1.0-6.1.0.6, 6.1.5-6.1.5.3, 7.0.0-7.0.0.2, 8.0.0-8.0.0.1, 8.5.0 < CF06 - Cross-Site Scripting
Jul 14, 2015
EPSS 0.02
CVE-2015-1887
IBM WebSphere Portal 7.0.0-7.0.0.2 CF29, 8.0.0 < 8.0.0.1 CF17, 8.5.0 < CF06 - Exposure of Sensitive JCR Information
Jul 14, 2015
EPSS 0.02
CVE-2015-1961
IBM Business Process Manager 7.5.x-8.5.6.0 - Authenticated Arbitrary JavaScript Execution via REST API
Jul 13, 2015
EPSS 0.02
CVE-2015-1966
IBM Tivoli Federated Identity Manager 6.2.0-6.2.2 XSS via ERROR_DESCRIPTION and TOKEN:RelayState
Jul 04, 2015
EPSS 0.02
CVE-2015-1916 HIGH
IBM Java 8 - Denial of Service via SSL/TLS Secure Socket Extension
Jul 02, 2015
CVSS 7.5
EPSS 0.03
CVE-2015-1914
IBM Java 5.0.0.0-5.0.16.9 - Exposure of Sensitive Information via Java Virtual Machine Permission Bypass
Jul 02, 2015
EPSS 0.04