ibm

8,321 tracked vulnerabilities.

CVE-2013-2998
IBM Maximo Asset Management and SmartCloud Control Desk - Sensitive Information Exposure via Invalid action_code
May 26, 2014
EPSS 0.01
CVE-2013-3984
IBM Sametime 8.x-8.5.2.1 and 9.x-9.0.0.1 - Unauthenticated Sensitive Cookie Exposure via Missing Secure Flag
May 26, 2014
EPSS 0.01
CVE-2013-3982
IBM Sametime 8.x-8.5.2.1 and 9.x-9.0.0.1 - Unauthenticated Exposure of Sensitive Information via Public Page
May 26, 2014
EPSS 0.13
CVE-2013-3981
IBM Sametime 8.x-8.5.2.1 and 9.x-9.0.0.1 - Unauthenticated Arbitrary User Avatar Photo Download
May 26, 2014
EPSS 0.02
CVE-2013-3980
IBM Sametime 8.x-8.5.2.1 and 9.x-9.0.0.1 - Denial of Service via Fictitious User Flood
May 26, 2014
EPSS 0.02
CVE-2013-3977
IBM Sametime 8.x-8.5.2.1 and 9.x-9.0.0.1 - Meeting Room Enumeration via Valid User Names
May 26, 2014
EPSS 0.09
CVE-2013-3975
IBM Sametime <9.0.0.1 - Info Disclosure
May 26, 2014
EPSS 0.13
CVE-2013-3046
IBM Sametime <8.5.2.1 & 9.0.0.1 - Info Disclosure
May 26, 2014
EPSS 0.00
CVE-2013-6726
IBM TRIRIGA Application Platform 3.2.x-3.3.x - Authenticated Cross-Site Scripting
May 07, 2014
EPSS 0.01
CVE-2013-6323
IBM WebSphere Application Server 7.x-8.5.x and WebSphere Virtual Enterprise 7.x - Authenticated Cross-Site Scripting
May 01, 2014
EPSS 0.02
CVE-2013-6738
IBM SmartCloud Analytics Log Analysis 1.1-1.2 - Cross-Site Scripting via OAuth Query Parameter
Apr 24, 2014
EPSS 0.02
CVE-2013-5459
IBM RSA/Rhapsody <4.0.6 - Privilege Escalation
Apr 21, 2014
EPSS 0.01
CVE-2013-3998
IBM InfoSphere BigInsights 1.1 and 2.x < 2.1 FP2 - Authenticated CRLF Injection
Mar 26, 2014
EPSS 0.01
CVE-2013-3997
IBM InfoSphere BigInsights 1.1 and 2.x < 2.1 FP2 - Authenticated Open Redirect
Mar 26, 2014
EPSS 0.01
CVE-2013-3976
IBM Tivoli Storage Manager for Mail Data Protection for Exchange < 6.1.3.4 and 6.3 < 6.3.1 - Unauthorized Mailbox Access
Mar 26, 2014
EPSS 0.01
CVE-2013-5445
IBM Cognos Express <10.2.1 - Info Disclosure
Mar 25, 2014
EPSS 0.01
CVE-2013-5444
IBM Cognos Express <10.2.1 - Info Disclosure
Mar 25, 2014
EPSS 0.02
CVE-2013-5443
IBM Cognos Express 9.0-10.2.1 - Cross-Site Request Forgery
Mar 25, 2014
EPSS 0.01
CVE-2013-6729
IBM QuickFile 1.0.0.0-1.1.0.1 - Authenticated Cross-Site Scripting via Crafted URL
Mar 21, 2014
EPSS 0.01
CVE-2013-5401
IBM WebSphere MQ Internet Pass-Thru < 2.1.0.1 - Denial of Service
Mar 21, 2014
EPSS 0.01
CVE-2013-4059
IBM InfoSphere Information Server 8.x-8.5 FP3, 8.7.x-8.7 FP2, 9.1.x-9.1.2.0 - Cross-Site Scripting
Mar 16, 2014
EPSS 0.01
CVE-2013-4058
IBM InfoSphere Information Server 8.x-8.5 FP3, 8.7.x-8.7 FP2, 9.1.x-9.1.2.0 - Authenticated SQL Injection
Mar 16, 2014
EPSS 0.01
CVE-2013-4057
IBM InfoSphere Information Server 8.5.x-8.5 FP3, 8.7.x-8.7 FP2, 9.1.x-9.1.2.0 - Cross-Site Request Forgery
Mar 16, 2014
EPSS 0.01
CVE-2013-6720
IBM Tealeaf CX 7.x, 8.x-8.6, 8.7-8.8 - Authenticated Path Traversal via Log Parameter
Mar 06, 2014
EPSS 0.29
CVE-2013-6719
IBM Tealeaf CX 7.x, 8.x-8.6, 8.7-8.8 - Authenticated OS Command Injection via testconn_host Parameter
Mar 06, 2014
EPSS 0.27