ibm

8,321 tracked vulnerabilities.

CVE-2014-3083
IBM WebSphere Application Server 7.0.x-7.0.0.35 8.0.x-8.0.0.10 8.5.x-8.5.5.3 - Information Disclosure
Aug 22, 2014
EPSS 0.02
CVE-2014-3070
IBM WebSphere Application Server Unauthenticated Access Restriction Bypass via addFileRegistryAccount
Aug 22, 2014
EPSS 0.02
CVE-2014-3022
IBM WebSphere Application Server 7.0.x-7.0.0.33 8.0.x-8.0.0.9 8.5.x-8.5.5.3 - Information Disclosure via Crafted URL
Aug 22, 2014
EPSS 0.02
CVE-2014-0965
IBM WebSphere Application Server 7.0.x-7.0.0.33 8.0.x-8.0.0.9 8.5.x-8.5.5.3 Sensitive Information Exposure
Aug 22, 2014
EPSS 0.02
CVE-2014-4750
IBM PowerVC Express Edition <1.2.0 - Info Disclosure
Aug 20, 2014
EPSS 0.01
CVE-2014-4749
IBM PowerVC <1.2.0 - Man-in-the-middle
Aug 20, 2014
EPSS 0.01
CVE-2014-4775
IBM InfoSphere <10.1-FP11, 11.0-FP5 - Info Disclosure
Aug 17, 2014
EPSS 0.01
CVE-2014-3087
IBM Business Process Manager 7.5-8.5.5 - Authenticated XML External Entity Injection via callService.do
Aug 17, 2014
EPSS 0.01
CVE-2014-3085
IBM Global Console Manager 16 and 32 Firmware < 1.20.0.22575 - Authenticated OS Command Injection via lpres Parameter
Aug 17, 2014
EPSS 0.08
CVE-2014-3081
IBM Global Console Manager <1.20.0.22575 Authenticated Arbitrary File Read via prodtest.php
Aug 17, 2014
EPSS 0.04
CVE-2014-3080
IBM Global Console Manager <1.20.0.22575 XSS via KVM CGI or AVCT Alert Key
Aug 17, 2014
EPSS 0.04
CVE-2014-3063
IBM InfoSphere Master Data Management 10.x < 10.1-FP11 and 11.x < 11.0-FP5 - Local Privilege Escalation
Aug 17, 2014
EPSS 0.01
CVE-2014-0969
IBM InfoSphere Master Data Management - Cross-Site Request Forgery in GDS Component
Aug 17, 2014
EPSS 0.01
CVE-2014-0966
IBM InfoSphere Master Data Management - Authenticated SQL Injection in GDS Component
Aug 17, 2014
EPSS 0.01
CVE-2014-0905
IBM InfoSphere BigInsights 2.0-2.1.2 - Unauthenticated Cookie Transmission via Insecure LTPA Cookie Flag
Aug 17, 2014
EPSS 0.01
CVE-2014-0876
IBM Tivoli Storage Manager 5.x-6.2.5.1, 6.3.x-6.3.1, 6.4.x-6.4.1 - Buffer Overflow in Java GUI Configuration Wizard
Aug 17, 2014
EPSS 0.00
CVE-2014-0852
IBM WebSphere DataPower SOA Appliance SSL/TLS Side-Channel Timing Attack
Aug 16, 2014
EPSS 0.01
CVE-2014-3072
IBM Security AppScan Source <9.0.0.1 - Privilege Escalation
Aug 12, 2014
EPSS 0.00
CVE-2014-4760
IBM WebSphere Portal - Open Redirect
Aug 12, 2014
EPSS 0.02
CVE-2014-4751
IBM Security Access Manager for Mobile <8.0.0.3 - XSS
Aug 12, 2014
EPSS 0.02
CVE-2014-4746
IBM WebSphere Portal <8.0.0.1 CF13-<8.5.0 CF01 - SSRF
Aug 12, 2014
EPSS 0.02
CVE-2014-3102
IBM WebSphere Portal 7.0.0-7.0.0.2 CF28 and 8.0.0 < 8.0.0.1 CF13 - Authenticated Cross-Site Scripting via Crafted URL
Aug 12, 2014
EPSS 0.01
CVE-2014-0953
IBM WebSphere Portal 6.1.0.0-6.1.0.6, 6.1.5.0-6.1.5.3, 7.0.0-7.0.0.2, and 8.0.0 < 8.0.0.1 XSS via Crafted URL
Aug 12, 2014
EPSS 0.02
CVE-2014-4757
IBM Content Collector <4.0.0.0-ICC-OE-IF004 - Auth Bypass
Aug 12, 2014
EPSS 0.00
CVE-2014-3086
IBM JVM <SR7FP1 - Privilege Escalation
Aug 12, 2014
EPSS 0.05