ibm
8,153 tracked vulnerabilities.
CVE-2024-35140
HIGH
IBM Security Verify Access Docker 10.0.0-10.0.6 - Privilege Escalation via Improper Certificate Validation
May 31, 2024
CVSS 7.7
EPSS 0.00
CVE-2024-31908
MEDIUM
IBM Planning Analytics Local <2.2 - XSS
May 31, 2024
CVSS 6.4
EPSS 0.00
CVE-2024-31907
MEDIUM
IBM Planning Analytics Local <2.2 - XSS
May 31, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-31889
MEDIUM
IBM Planning Analytics Local <2.2 - XSS
May 31, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-22338
MEDIUM
IBM Security Verify Access OIDC Provider <23.03 - Info Disclosure
May 31, 2024
CVSS 4.0
EPSS 0.00
CVE-2024-28793
MEDIUM
IBM Engineering Workflow Management 7.0.2-7.0.3 - Stored Cross-Site Scripting
May 28, 2024
CVSS 4.9
EPSS 0.00
CVE-2024-31895
MEDIUM
IBM App Connect Enterprise <12.0.12.1 - Info Disclosure
May 22, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-31894
MEDIUM
IBM App Connect Enterprise <12.0.12.1 - Info Disclosure
May 22, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-27264
HIGH
IBM Performance Tools for i <7.6 - Privilege Escalation
May 22, 2024
CVSS 7.4
EPSS 0.00
CVE-2024-31904
MEDIUM
IBM App Connect Enterprise 11.0.0.1-11.0.0.25 & 12.0.1.0-12.0.12.0 DoS via Uncaught Exception
May 22, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-31893
MEDIUM
IBM App Connect Enterprise <12.0.12.1 - Info Disclosure
May 22, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-31879
HIGH
IBM i 7.2-7.4 - Remote Code Execution via Untrusted Data Deserialization
May 18, 2024
CVSS 7.5
EPSS 0.01
CVE-2024-27260
HIGH
IBM AIX <7.2,7.3 - Privilege Escalation
May 16, 2024
CVSS 8.4
EPSS 0.00
CVE-2024-28781
MEDIUM
IBM UrbanCode Deploy 7.0-7.0.5.20 7.1-7.1.2.16 7.2-7.2.3.9 7.3-7.3.2.4 8.0-8.0.0.1 - Cross-Site Scripting
May 14, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-28761
MEDIUM
IBM App Connect Enterprise 11.0.0.1-11.0.0.25 and 12.0.1.0-12.0.12.0 - HTML Injection
May 14, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-28760
MEDIUM
IBM App Connect Enterprise 11.0.0.1-11.0.0.25 & 12.0.1.0-12.0.12.0 DoS via Dashboard
May 14, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-27269
MEDIUM
IBM QRadar SIEM 7.5 - Info Disclosure
May 14, 2024
CVSS 6.8
EPSS 0.00
CVE-2024-22345
MEDIUM
IBM TXSeries for Multiplatforms 8.2 - Info Disclosure
May 14, 2024
CVSS 6.2
EPSS 0.00
CVE-2024-22344
MEDIUM
IBM TXSeries for Multiplatforms 8.2 - XSS
May 14, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-22343
MEDIUM
IBM TXSeries for Multiplatforms 8.2 - Info Disclosure
May 14, 2024
CVSS 4.0
EPSS 0.00
CVE-2024-27273
HIGH
IBM AIX 7.2-7.3 and VIOS 3.1-4.1 - Privilege Escalation via Unix Domain Datagram Socket SO_PEERID Operation
May 07, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-25047
HIGH
IBM Cognos Analytics <12.0.2 - Code Injection
May 02, 2024
CVSS 8.6
EPSS 0.00
CVE-2024-28764
MEDIUM
IBM WebSphere Automation 1.7.0 - Command Injection
May 01, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-25015
HIGH
IBM MQ 9.2.0.0-9.2.0.24 and 9.3.0-9.3.4 - Denial of Service via HTTP Request Resource Consumption
May 01, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-28775
MEDIUM
IBM WebSphere Automation 1.7.0 - Stored Cross-Site Scripting
May 01, 2024
CVSS 4.4
EPSS 0.00
Products
websphere_application_server 444
aix 393
db2 327
rational_quality_manager 202
sterling_b2b_integrator 195
infosphere_information_server 188
qradar_security_information_and_event_manager 187
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 102
sterling_file_gateway 93
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
vios 85
rational_software_architect_design_manager 81
api_connect 79
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
smartcloud_control_desk 65
urbancode_deploy 63
Quick Filters