ibm

8,170 tracked vulnerabilities.

CVE-2023-37413 MEDIUM
IBM Aspera Faspex 5.0.0-5.0.10 - Username Information Disclosure via Observable Response Discrepancy
Jan 29, 2025
CVSS 5.3
EPSS 0.00
CVE-2023-37412 MEDIUM
IBM Aspera Faspex <5.0.10 - Privilege Escalation
Jan 29, 2025
CVSS 4.4
EPSS 0.00
CVE-2023-37398 MEDIUM
IBM Aspera Faspex <5.0.10 - Info Disclosure
Jan 29, 2025
CVSS 5.9
EPSS 0.00
CVE-2023-35907 MEDIUM
IBM Aspera Faspex <5.0.10 - Info Disclosure
Jan 29, 2025
CVSS 5.9
EPSS 0.00
CVE-2023-33838 MEDIUM
IBM Security Verify Governance 10.0.2 - Info Disclosure
Jan 29, 2025
CVSS 4.4
EPSS 0.00
CVE-2023-35017 MEDIUM
IBM Security Verify Governance 10.0.2 - Cleartext Transmission of Sensitive Information
Jan 29, 2025
CVSS 5.9
EPSS 0.00
CVE-2023-50316 MEDIUM
IBM Sterling B2B Integrator 6.0.0.0-6.1.2.5 and 6.2.0.0-6.2.0.1 - SQL Injection
Jan 28, 2025
CVSS 6.3
EPSS 0.00
CVE-2023-52292 MEDIUM
IBM Sterling File Gateway 6.0.0.0-6.1.2.5 and 6.2.0.0-6.2.0.3 - Stored Cross-Site Scripting
Jan 27, 2025
CVSS 6.4
EPSS 0.00
CVE-2023-47159 MEDIUM
IBM Sterling File Gateway 6.0.0.0-6.1.2.5 & 6.2.0.0-6.2.0.1 Username Enumeration via Response Discrepancy
Jan 27, 2025
CVSS 4.3
EPSS 0.00
CVE-2023-46187 MEDIUM
IBM InfoSphere Master Data Management - XSS
Jan 27, 2025
CVSS 5.4
EPSS 0.00
CVE-2023-50946 MEDIUM
IBM Common Licensing 9.0 - Authenticated Incorrect Authorization
Jan 26, 2025
CVSS 6.5
EPSS 0.00
CVE-2023-50945 MEDIUM
IBM Common Licensing 9.0 - Info Disclosure
Jan 26, 2025
CVSS 6.2
EPSS 0.00
CVE-2023-38009 MEDIUM
IBM Cognos Mobile Client 1.1 iOS - Information Disclosure via Man-in-the-Middle Attack
Jan 26, 2025
CVSS 4.2
EPSS 0.00
CVE-2023-38716 MEDIUM
IBM Cloud Pak System <2.3.4 - Info Disclosure
Jan 25, 2025
CVSS 5.3
EPSS 0.00
CVE-2023-38714 MEDIUM
IBM Cloud Pak System <2.3.3.7 - Info Disclosure
Jan 25, 2025
CVSS 5.3
EPSS 0.00
CVE-2023-38713 MEDIUM
IBM Cloud Pak System <2.3.3.7 - Info Disclosure
Jan 25, 2025
CVSS 5.3
EPSS 0.00
CVE-2023-38271 MEDIUM
IBM Cloud Pak System <2.3.3.7 - Info Disclosure
Jan 25, 2025
CVSS 4.3
EPSS 0.00
CVE-2023-38013 MEDIUM
IBM Cloud Pak System <2.3.3.7 - Info Disclosure
Jan 25, 2025
CVSS 5.3
EPSS 0.00
CVE-2023-38012 MEDIUM
IBM Cloud Pak System 2.3.3.6-2.3.4.0 - Path Traversal via URL Request
Jan 25, 2025
CVSS 5.3
EPSS 0.00
CVE-2023-50309 MEDIUM
IBM Sterling B2B Integrator 6.0.0.0-6.1.2.5 and 6.2.0.0 - Stored Cross-Site Scripting
Jan 23, 2025
CVSS 6.4
EPSS 0.00
CVE-2023-32340 MEDIUM
IBM Sterling B2B Integrator 6.0.0.0-6.1.2.5 and 6.2.0.0 - Cross-Site Scripting
Jan 23, 2025
CVSS 4.6
EPSS 0.00
CVE-2023-30443 MEDIUM
IBM Db2 10.5, 11.1, 11.5 - Denial of Service via Crafted Query
Dec 19, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-50956 MEDIUM
IBM Storage Defender - Resiliency Service <2.0.10 - Info Disclosure
Dec 18, 2024
CVSS 4.4
EPSS 0.00
CVE-2023-23472 LOW
IBM InfoSphere DataStage Flow Designer - Info Disclosure
Dec 11, 2024
CVSS 3.1
EPSS 0.00
CVE-2023-37395 LOW
IBM Aspera Faspex 5.0.0-5.0.7 - Sensitive Information Exposure via Improper Encryption
Dec 11, 2024
CVSS 2.5
EPSS 0.00