ibm

8,153 tracked vulnerabilities.

CVE-2024-51476 HIGH
IBM Concert Software 1.0.5 - Improper Restriction of Excessive Authentication Attempts
Mar 06, 2025
CVSS 7.5
EPSS 0.00
CVE-2024-43169 HIGH
IBM Engineering Requirements Management DOORS Next <7.1 - Info Disc...
Mar 03, 2025
CVSS 8.8
EPSS 0.00
CVE-2024-41771 HIGH
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 - Insufficiently Protected Credentials
Mar 03, 2025
CVSS 7.5
EPSS 0.00
CVE-2024-41770 HIGH
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, 7.1 - Insufficiently Protected Credentials
Mar 03, 2025
CVSS 7.5
EPSS 0.00
CVE-2024-54179 MEDIUM
IBM Business Automation Workflow <24.0.2 - XSS
Mar 03, 2025
CVSS 5.4
EPSS 0.00
CVE-2024-55907 LOW
IBM Cognos Analytics Mobile <1.1 - Info Disclosure
Mar 02, 2025
CVSS 2.0
EPSS 0.00
CVE-2024-41778 MEDIUM
IBM Controller <11.0.1-11.1.0 - Info Disclosure
Mar 01, 2025
CVSS 5.3
EPSS 0.00
CVE-2024-54175 MEDIUM
IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD - Denial of Service
Feb 28, 2025
CVSS 5.5
EPSS 0.00
CVE-2024-56340 MEDIUM
IBM Cognos Analytics 11.2.0-11.2.4 FP5 - Local File Inclusion via Deficon Parameter
Feb 28, 2025
CVSS 6.5
EPSS 0.12
CVE-2024-54173 MEDIUM
IBM MQ Appliance 9.3.0.0-9.3.0.26 and <9.4.2 - Sensitive Information Exposure in Webconsole Trace Files
Feb 28, 2025
CVSS 4.7
EPSS 0.00
CVE-2024-56812 LOW
IBM EntireX 11.1 - Sensitive Information Disclosure via Detailed Error Messages
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56811 LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Error Messages
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56810 LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Technical Error Message
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56496 LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Error Messages
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56495 LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Technical Error Message
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56494 LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Technical Error Message
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-56493 LOW
IBM EntireX 11.1 - Sensitive Information Exposure via Detailed Error Messages
Feb 27, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-54170 MEDIUM
IBM EntireX 11.1 - Denial of Service via Inefficient Regular Expression
Feb 27, 2025
CVSS 5.5
EPSS 0.00
CVE-2024-54169 MEDIUM
IBM EntireX 11.1 - Authenticated Path Traversal via Dot Dot Sequences
Feb 27, 2025
CVSS 6.5
EPSS 0.00
CVE-2024-55898 HIGH
IBM i 7.2-7.5 - Privilege Escalation via Unqualified Library Call
Feb 24, 2025
CVSS 8.5
EPSS 0.00
CVE-2024-22341 MEDIUM
IBM Watson Query on Cloud Pak for Data <4.9 - Info Disclosure
Feb 22, 2025
CVSS 5.3
EPSS 0.00
CVE-2024-45674 LOW
IBM Security Verify Bridge Directory Sync 1.0.1-1.0.12 - Sensitive Information Disclosure in Log Files
Feb 22, 2025
CVSS 3.3
EPSS 0.00
CVE-2024-45673 MEDIUM
IBM Security Verify - Info Disclosure
Feb 21, 2025
CVSS 5.5
EPSS 0.00
CVE-2024-49781 HIGH
IBM OpenPages with Watson 8.3 and 9.0 - XML External Entity Injection
Feb 20, 2025
CVSS 7.1
EPSS 0.00
CVE-2024-49779 MEDIUM
IBM OpenPages with Watson 8.3-9.0 - Auth Bypass
Feb 20, 2025
CVSS 4.3
EPSS 0.00