ibm

8,321 tracked vulnerabilities.

CVE-2014-3042
IBM CICS Transaction Server 3.1-5.1 - Authenticated Denial of Service via Invalid 3270 Data Stream
Jun 10, 2014
EPSS 0.01
CVE-2014-3977
IBM AIX 6.1/7.1 & VIOS 2.2.x - Local Privilege Escalation
Jun 08, 2014
EPSS 0.01
CVE-2014-3048
IBM System Storage Virtualization Engine TS7700 - Privilege Escalation
Jun 08, 2014
EPSS 0.00
CVE-2014-3038
IBM SPSS Modeler 16.0 - Local Privilege Escalation via Improper Group Privilege Handling
Jun 08, 2014
EPSS 0.00
CVE-2014-3036
IBM API Management 3.0.0.0 - Auth Bypass
Jun 08, 2014
EPSS 0.01
CVE-2014-0936
IBM Security AppScan Source 8.0-9.0 - Cleartext Transmission of Sensitive Assessment Data
Jun 08, 2014
EPSS 0.01
CVE-2014-0929
IBM Connections <= 3.0.1.1 - Authenticated Cross-Site Request Forgery in Profiles Component
Jun 08, 2014
EPSS 0.01
CVE-2014-0961
IBM Security Identity Manager and Tivoli Identity Manager - Authenticated Cross-Site Request Forgery
Jun 08, 2014
EPSS 0.01
CVE-2014-0935
IBM Smart Analytics System <2.1.3.0 - Privilege Escalation
Jun 04, 2014
EPSS 0.01
CVE-2014-0907
IBM DB2 <10.5 - Privilege Escalation
May 30, 2014
EPSS 0.01
CVE-2014-0925
IBM Sterling Control Center 5.4.0-5.4.1 - Authenticated Open Redirect via Crafted URL
May 30, 2014
EPSS 0.01
CVE-2014-3010
IBM WebSphere Service Registry and Repository XSS via Crafted URL
May 30, 2014
EPSS 0.01
CVE-2014-0878
IBM SDK Java Technology Edition - Predictable Random Number Generation in IBMSecureRandom
May 26, 2014
EPSS 0.02
CVE-2014-0893
IBM SmartCloud Control Desk 7.x < 7.5.0.3 and 7.5.1.x < 7.5.1.2 - Authenticated Cross-Site Scripting in customreport.jsp
May 26, 2014
EPSS 0.01
CVE-2014-0849
IBM Maximo Asset Management & SmartCloud Control Desk Privilege Escalation
May 26, 2014
EPSS 0.01
CVE-2014-0825
IBM Maximo Asset Management 7.x < 7.1.1.12 and 7.5.x < 7.5.0.5 - Authenticated XSS via openreport.jsp
May 26, 2014
EPSS 0.01
CVE-2014-0824
IBM Maximo Asset Management 7.x - Authenticated Cross-Site Scripting via Attachment URL
May 26, 2014
EPSS 0.01
CVE-2014-3867
IBM Sametime 8.x-8.5.2.1 and 9.x-9.0.0.1 - Exposure of Sensitive Information via Missing HTTPOnly Flag
May 26, 2014
EPSS 0.02
CVE-2014-3014
IBM Sametime 8.x-8.5.2.1 and 9.x-9.0.0.1 - Authenticated Cross-Site Scripting via Crafted URL
May 26, 2014
EPSS 0.01
CVE-2014-0906
IBM Sametime 8.x-8.5.2.1 and 9.x-9.0.0.1 - Unauthenticated User Search via Expired Session Cookie
May 26, 2014
EPSS 0.01
CVE-2014-3015
IBM Sametime Proxy Server and Web Client 9.0-9.0.0.1 - Cross-Site Request Forgery
May 26, 2014
EPSS 0.01
CVE-2014-0943
IBM WebSphere Commerce 6.0 FP 2-5, 7.0.0.0-7.0.0.8, 7.0 FP 1-7 DoS via Malformed ID
May 25, 2014
EPSS 0.02
CVE-2014-0959
IBM WebSphere Portal 6.1.0-6.1.0.6, 6.1.5-6.1.5.3, 7.0-7.0.0.2, and 8.0 < 8.0.0.1 - Authenticated DoS via Login Redirect
May 22, 2014
EPSS 0.02
CVE-2014-0958
IBM WebSphere Portal 6.1.0-6.1.0.6 CF27, 6.1.5-6.1.5.3 CF27, 7.0-7.0.0.2 CF28, and 8.0 < 8.0.0.1 CF12 - Open Redirect
May 22, 2014
EPSS 0.02
CVE-2014-0956
IBM WebSphere Portal 6.1.0-6.1.0.6, 6.1.5-6.1.5.3, 7.0-7.0.0.2, 8.0 < 8.0.0.1 - Cross-Site Scripting
May 22, 2014
EPSS 0.01