ibm

8,153 tracked vulnerabilities.

CVE-2024-35140 HIGH
IBM Security Verify Access Docker 10.0.0-10.0.6 - Privilege Escalation via Improper Certificate Validation
May 31, 2024
CVSS 7.7
EPSS 0.00
CVE-2024-31908 MEDIUM
IBM Planning Analytics Local <2.2 - XSS
May 31, 2024
CVSS 6.4
EPSS 0.00
CVE-2024-31907 MEDIUM
IBM Planning Analytics Local <2.2 - XSS
May 31, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-31889 MEDIUM
IBM Planning Analytics Local <2.2 - XSS
May 31, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-22338 MEDIUM
IBM Security Verify Access OIDC Provider <23.03 - Info Disclosure
May 31, 2024
CVSS 4.0
EPSS 0.00
CVE-2024-28793 MEDIUM
IBM Engineering Workflow Management 7.0.2-7.0.3 - Stored Cross-Site Scripting
May 28, 2024
CVSS 4.9
EPSS 0.00
CVE-2024-31895 MEDIUM
IBM App Connect Enterprise <12.0.12.1 - Info Disclosure
May 22, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-31894 MEDIUM
IBM App Connect Enterprise <12.0.12.1 - Info Disclosure
May 22, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-27264 HIGH
IBM Performance Tools for i <7.6 - Privilege Escalation
May 22, 2024
CVSS 7.4
EPSS 0.00
CVE-2024-31904 MEDIUM
IBM App Connect Enterprise 11.0.0.1-11.0.0.25 & 12.0.1.0-12.0.12.0 DoS via Uncaught Exception
May 22, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-31893 MEDIUM
IBM App Connect Enterprise <12.0.12.1 - Info Disclosure
May 22, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-31879 HIGH
IBM i 7.2-7.4 - Remote Code Execution via Untrusted Data Deserialization
May 18, 2024
CVSS 7.5
EPSS 0.01
CVE-2024-27260 HIGH
IBM AIX <7.2,7.3 - Privilege Escalation
May 16, 2024
CVSS 8.4
EPSS 0.00
CVE-2024-28781 MEDIUM
IBM UrbanCode Deploy 7.0-7.0.5.20 7.1-7.1.2.16 7.2-7.2.3.9 7.3-7.3.2.4 8.0-8.0.0.1 - Cross-Site Scripting
May 14, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-28761 MEDIUM
IBM App Connect Enterprise 11.0.0.1-11.0.0.25 and 12.0.1.0-12.0.12.0 - HTML Injection
May 14, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-28760 MEDIUM
IBM App Connect Enterprise 11.0.0.1-11.0.0.25 & 12.0.1.0-12.0.12.0 DoS via Dashboard
May 14, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-27269 MEDIUM
IBM QRadar SIEM 7.5 - Info Disclosure
May 14, 2024
CVSS 6.8
EPSS 0.00
CVE-2024-22345 MEDIUM
IBM TXSeries for Multiplatforms 8.2 - Info Disclosure
May 14, 2024
CVSS 6.2
EPSS 0.00
CVE-2024-22344 MEDIUM
IBM TXSeries for Multiplatforms 8.2 - XSS
May 14, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-22343 MEDIUM
IBM TXSeries for Multiplatforms 8.2 - Info Disclosure
May 14, 2024
CVSS 4.0
EPSS 0.00
CVE-2024-27273 HIGH
IBM AIX 7.2-7.3 and VIOS 3.1-4.1 - Privilege Escalation via Unix Domain Datagram Socket SO_PEERID Operation
May 07, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-25047 HIGH
IBM Cognos Analytics <12.0.2 - Code Injection
May 02, 2024
CVSS 8.6
EPSS 0.00
CVE-2024-28764 MEDIUM
IBM WebSphere Automation 1.7.0 - Command Injection
May 01, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-25015 HIGH
IBM MQ 9.2.0.0-9.2.0.24 and 9.3.0-9.3.4 - Denial of Service via HTTP Request Resource Consumption
May 01, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-28775 MEDIUM
IBM WebSphere Automation 1.7.0 - Stored Cross-Site Scripting
May 01, 2024
CVSS 4.4
EPSS 0.00