ibm
8,153 tracked vulnerabilities.
CVE-2024-51476
HIGH
IBM Concert Software 1.0.5 - Improper Restriction of Excessive Authentication Attempts
Mar 06, 2025
CVSS 7.5
EPSS 0.00
CVE-2024-43169
HIGH
IBM Engineering Requirements Management DOORS Next <7.1 - Info Disc...
Mar 03, 2025
CVSS 8.8
EPSS 0.00
CVE-2024-41771
HIGH
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 - Insufficiently Protected Credentials
Mar 03, 2025
CVSS 7.5
EPSS 0.00
CVE-2024-41770
HIGH
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, 7.1 - Insufficiently Protected Credentials
Mar 03, 2025
CVSS 7.5
EPSS 0.00
CVE-2024-54179
MEDIUM
IBM Business Automation Workflow <24.0.2 - XSS
Mar 03, 2025
CVSS 5.4
EPSS 0.00
CVE-2024-55907
LOW
IBM Cognos Analytics Mobile <1.1 - Info Disclosure
Mar 02, 2025
CVSS 2.0
EPSS 0.00
CVE-2024-41778
MEDIUM
IBM Controller <11.0.1-11.1.0 - Info Disclosure
Mar 01, 2025
CVSS 5.3
EPSS 0.00
CVE-2024-54175
MEDIUM
IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD - Denial of Service
Feb 28, 2025
CVSS 5.5
EPSS 0.00
CVE-2024-56340
MEDIUM
IBM Cognos Analytics 11.2.0-11.2.4 FP5 - Local File Inclusion via Deficon Parameter
Feb 28, 2025
CVSS 6.5
EPSS 0.12
CVE-2024-54173
MEDIUM
IBM MQ Appliance 9.3.0.0-9.3.0.26 and <9.4.2 - Sensitive Information Exposure in Webconsole Trace Files
Feb 28, 2025
CVSS 4.7
EPSS 0.00
CVE-2024-56812
LOW
IBM EntireX 11.1 - Sensitive Information Disclosure via Detailed Error Messages
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56811
LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Error Messages
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56810
LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Technical Error Message
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56496
LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Error Messages
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56495
LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Technical Error Message
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56494
LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Technical Error Message
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56493
LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Error Messages
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-54170
MEDIUM
IBM EntireX 11.1 - Denial of Service via Inefficient Regular Expression
Feb 27, 2025
CVSS 5.5
EPSS 0.00
CVE-2024-54169
MEDIUM
IBM EntireX 11.1 - Authenticated Path Traversal via Dot Dot Sequences
Feb 27, 2025
CVSS 6.5
EPSS 0.00
CVE-2024-55898
HIGH
IBM i 7.2-7.5 - Privilege Escalation via Unqualified Library Call
Feb 24, 2025
CVSS 8.5
EPSS 0.00
CVE-2024-22341
MEDIUM
IBM Watson Query on Cloud Pak for Data <4.9 - Info Disclosure
Feb 22, 2025
CVSS 5.3
EPSS 0.00
CVE-2024-45674
LOW
IBM Security Verify Bridge Directory Sync 1.0.1-1.0.12 - Sensitive Information Disclosure in Log Files
Feb 22, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-45673
MEDIUM
IBM Security Verify - Info Disclosure
Feb 21, 2025
CVSS 5.5
EPSS 0.00
CVE-2024-49781
HIGH
IBM OpenPages with Watson 8.3 and 9.0 - XML External Entity Injection
Feb 20, 2025
CVSS 7.1
EPSS 0.00
CVE-2024-49779
MEDIUM
IBM OpenPages with Watson 8.3-9.0 - Auth Bypass
Feb 20, 2025
CVSS 4.3
EPSS 0.00
Products
websphere_application_server 444
aix 393
db2 327
rational_quality_manager 202
sterling_b2b_integrator 195
infosphere_information_server 188
qradar_security_information_and_event_manager 187
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 102
sterling_file_gateway 93
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
vios 85
rational_software_architect_design_manager 81
api_connect 79
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
smartcloud_control_desk 65
urbancode_deploy 63
Quick Filters