ibm

8,153 tracked vulnerabilities.

CVE-2024-35116 MEDIUM
IBM MQ 9.0.0.0-9.0.0.25 and 9.3.0.0-9.3.x.x - Denial of Service via Configuration Change Error
Jun 28, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-25053 MEDIUM
IBM Cognos Analytics <12.0.2 - Improper Certificate Validation
Jun 28, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-25041 MEDIUM
IBM Cognos Analytics 11.2.0-11.2.3, 12.0.0-12.0.2 - Cross-Site Scripting in Cognos Assistant Column Headings
Jun 28, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-25031 MEDIUM
IBM Storage Defender - Resiliency Service <2.0.5 - Info Disclosure
Jun 28, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-35155 MEDIUM
IBM MQ Console 9.3 LTS and 9.3 CD - Sensitive Information Exposure via Detailed Error Messages
Jun 28, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-31919 MEDIUM
IBM MQ 9.0-9.3 - Denial of Service via MQBUFMH API Exit Message Processing
Jun 28, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-31912 HIGH
IBM MQ 9.3 LTS and 9.3 CD - Authenticated Privilege Escalation via Incorrect Privilege Assignment
Jun 28, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-35139 MEDIUM
IBM Security Access Manager 10.0.0.0-10.0.7.1 - Sensitive Information Exposure via Incorrect Default Permissions
Jun 28, 2024
CVSS 6.2
EPSS 0.00
CVE-2024-35137 MEDIUM
IBM Security Access Manager Docker <10.0.8 - Privilege Escalation
Jun 28, 2024
CVSS 6.2
EPSS 0.00
CVE-2024-35153 MEDIUM
IBM WebSphere Application Server 8.5.0.0-8.5.5.25 - Cross-Site Scripting
Jun 27, 2024
CVSS 4.8
EPSS 0.00
CVE-2024-31916 HIGH
IBM OpenBMC FW1050.00-FW1050.10 - Info Disclosure
Jun 27, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-31883 MEDIUM
IBM Security Verify Access <10.0.7.1 - DoS
Jun 27, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-38319 HIGH
IBM Security SOAR <51.0.2.0 - Code Injection
Jun 22, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-31890 HIGH
IBM TCP/IP <7.5 - Privilege Escalation
Jun 21, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-37532 HIGH
IBM WebSphere Application Server 8.5/9.0 - Identity Spoofing via Cryptographic Validation Flaw
Jun 20, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-38329 HIGH
IBM Storage Protect for Virtual Environments - Auth Bypass
Jun 19, 2024
CVSS 7.7
EPSS 0.00
CVE-2024-31870 LOW
IBM Db2 for i <7.6 - Info Disclosure
Jun 15, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-27275 HIGH
IBM i 7.2-7.5 - Incorrect Privilege Assignment in Physical File Trigger Configuration
Jun 15, 2024
CVSS 7.4
EPSS 0.00
CVE-2024-25052 MEDIUM
IBM Jazz Reporting Service 7.0.3 - Info Disclosure
Jun 13, 2024
CVSS 4.4
EPSS 0.00
CVE-2024-22333 LOW
IBM Maximo Asset Management <7.6.1.3 - Info Disclosure
Jun 13, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-31881 MEDIUM
IBM Db2 10.5, 11.1, 11.5 - Authenticated Denial of Service via Crafted Query on Columnar Tables
Jun 12, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-28762 MEDIUM
IBM Db2 10.5, 11.1, 11.5 - Denial of Service via Crafted Query
Jun 12, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-31878 MEDIUM
IBM i 7.2-7.5 - SST User Enumeration
Jun 07, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-22326 MEDIUM
IBM System Storage DS8900F - Auth Bypass
Jun 06, 2024
CVSS 5.0
EPSS 0.00
CVE-2024-35142 HIGH
IBM Security Verify Access Docker <10.0.7 - Privilege Escalation
May 31, 2024
CVSS 8.4
EPSS 0.00