ibm
8,153 tracked vulnerabilities.
CVE-2024-35116
MEDIUM
IBM MQ 9.0.0.0-9.0.0.25 and 9.3.0.0-9.3.x.x - Denial of Service via Configuration Change Error
Jun 28, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-25053
MEDIUM
IBM Cognos Analytics <12.0.2 - Improper Certificate Validation
Jun 28, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-25041
MEDIUM
IBM Cognos Analytics 11.2.0-11.2.3, 12.0.0-12.0.2 - Cross-Site Scripting in Cognos Assistant Column Headings
Jun 28, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-25031
MEDIUM
IBM Storage Defender - Resiliency Service <2.0.5 - Info Disclosure
Jun 28, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-35155
MEDIUM
IBM MQ Console 9.3 LTS and 9.3 CD - Sensitive Information Exposure via Detailed Error Messages
Jun 28, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-31919
MEDIUM
IBM MQ 9.0-9.3 - Denial of Service via MQBUFMH API Exit Message Processing
Jun 28, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-31912
HIGH
IBM MQ 9.3 LTS and 9.3 CD - Authenticated Privilege Escalation via Incorrect Privilege Assignment
Jun 28, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-35139
MEDIUM
IBM Security Access Manager 10.0.0.0-10.0.7.1 - Sensitive Information Exposure via Incorrect Default Permissions
Jun 28, 2024
CVSS 6.2
EPSS 0.00
CVE-2024-35137
MEDIUM
IBM Security Access Manager Docker <10.0.8 - Privilege Escalation
Jun 28, 2024
CVSS 6.2
EPSS 0.00
CVE-2024-35153
MEDIUM
IBM WebSphere Application Server 8.5.0.0-8.5.5.25 - Cross-Site Scripting
Jun 27, 2024
CVSS 4.8
EPSS 0.00
CVE-2024-31916
HIGH
IBM OpenBMC FW1050.00-FW1050.10 - Info Disclosure
Jun 27, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-31883
MEDIUM
IBM Security Verify Access <10.0.7.1 - DoS
Jun 27, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-38319
HIGH
IBM Security SOAR <51.0.2.0 - Code Injection
Jun 22, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-31890
HIGH
IBM TCP/IP <7.5 - Privilege Escalation
Jun 21, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-37532
HIGH
IBM WebSphere Application Server 8.5/9.0 - Identity Spoofing via Cryptographic Validation Flaw
Jun 20, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-38329
HIGH
IBM Storage Protect for Virtual Environments - Auth Bypass
Jun 19, 2024
CVSS 7.7
EPSS 0.00
CVE-2024-31870
LOW
IBM Db2 for i <7.6 - Info Disclosure
Jun 15, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-27275
HIGH
IBM i 7.2-7.5 - Incorrect Privilege Assignment in Physical File Trigger Configuration
Jun 15, 2024
CVSS 7.4
EPSS 0.00
CVE-2024-25052
MEDIUM
IBM Jazz Reporting Service 7.0.3 - Info Disclosure
Jun 13, 2024
CVSS 4.4
EPSS 0.00
CVE-2024-22333
LOW
IBM Maximo Asset Management <7.6.1.3 - Info Disclosure
Jun 13, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-31881
MEDIUM
IBM Db2 10.5, 11.1, 11.5 - Authenticated Denial of Service via Crafted Query on Columnar Tables
Jun 12, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-28762
MEDIUM
IBM Db2 10.5, 11.1, 11.5 - Denial of Service via Crafted Query
Jun 12, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-31878
MEDIUM
IBM i 7.2-7.5 - SST User Enumeration
Jun 07, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-22326
MEDIUM
IBM System Storage DS8900F - Auth Bypass
Jun 06, 2024
CVSS 5.0
EPSS 0.00
CVE-2024-35142
HIGH
IBM Security Verify Access Docker <10.0.7 - Privilege Escalation
May 31, 2024
CVSS 8.4
EPSS 0.00
Products
websphere_application_server 444
aix 393
db2 327
rational_quality_manager 202
sterling_b2b_integrator 195
infosphere_information_server 188
qradar_security_information_and_event_manager 187
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 102
sterling_file_gateway 93
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
vios 85
rational_software_architect_design_manager 81
api_connect 79
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
smartcloud_control_desk 65
urbancode_deploy 63
Quick Filters