ibm
8,173 tracked vulnerabilities.
CVE-2023-47745
MEDIUM
IBM MQ Operator Cleartext Transmission of Sensitive Information
Mar 03, 2024
CVSS 6.2
EPSS 0.00
CVE-2023-50312
MEDIUM
IBM WebSphere Application Server Liberty 17.0.0.3-24.0.0.2 - Use of a Broken or Risky Cryptographic Algorithm
Mar 01, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-47716
MEDIUM
IBM CP4BA - Filenet Content Manager 5.5.8.0, 5.5.10.0, 5.5.11.0 - Incorrect Authorization
Mar 01, 2024
CVSS 6.3
EPSS 0.00
CVE-2023-38366
MEDIUM
IBM Filenet Content Manager Component <5.5.11.0 - Path Traversal
Mar 01, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-50324
MEDIUM
IBM Cognos Command Center 10.2.4.1 and 10.2.5 - Exposure of Sensitive Information via X-AspNet-Version Response Header
Mar 01, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-50305
MEDIUM
IBM Engineering Requirements Management DOORS 9.7.2.7 - Info Disclo...
Mar 01, 2024
CVSS 5.1
EPSS 0.00
CVE-2023-28949
MEDIUM
IBM Engineering Requirements Management DOORS 9.7.2.7 - CSRF
Mar 01, 2024
CVSS 6.5
EPSS 0.00
CVE-2023-28525
MEDIUM
IBM Engineering Requirements Management <9.7.2.7 - XSS
Mar 01, 2024
CVSS 4.8
EPSS 0.00
CVE-2023-38367
MEDIUM
IBM Cloud Pak for Business Automation 18.0.0-22.0.2 - Unauthenticated CRUD Operations via Invalid Token
Feb 29, 2024
CVSS 6.5
EPSS 0.00
CVE-2023-27545
MEDIUM
IBM Cloud Pak for Data 4.6.0 - Sensitive Information Exposure via Browser Cache
Feb 29, 2024
CVSS 4.0
EPSS 0.00
CVE-2023-38372
MEDIUM
IBM Watson IoT Platform 1.0 - Privilege Escalation
Feb 29, 2024
CVSS 5.9
EPSS 0.00
CVE-2023-25926
MEDIUM
IBM Security Guardium Key Lifecycle Manager 3.0-4.1.1 - XML External Entity Injection
Feb 29, 2024
CVSS 5.5
EPSS 0.00
CVE-2023-25921
HIGH
IBM Security Guardium Key Lifecycle Manager 3.0-4.1.1 - Unrestricted Upload of File with Dangerous Type
Feb 29, 2024
CVSS 8.5
EPSS 0.00
CVE-2023-25925
HIGH
IBM Security Guardium Key Lifecycle Manager 3.0-4.1.1 - Authenticated Remote Code Execution
Feb 28, 2024
CVSS 8.5
EPSS 0.00
CVE-2023-25922
MEDIUM
IBM Security Guardium Key Lifecycle Manager 3.0-4.1.1 - Unrestricted Upload of File with Dangerous Type
Feb 28, 2024
CVSS 4.3
EPSS 0.00
CVE-2023-50303
MEDIUM
IBM InfoSphere Information Server 11.7 - Stored Cross-Site Scripting
Feb 28, 2024
CVSS 6.1
EPSS 0.00
CVE-2023-43051
MEDIUM
IBM Cognos Analytics <12.0.0 - XSS
Feb 26, 2024
CVSS 5.4
EPSS 0.00
CVE-2023-38359
MEDIUM
IBM Cognos Analytics <12.0.0 - XSS
Feb 26, 2024
CVSS 6.1
EPSS 0.00
CVE-2023-32344
MEDIUM
Netapp Oncommand Insight < 11.1.7 - CSRF
Feb 26, 2024
CVSS 4.3
EPSS 0.00
CVE-2023-30996
MEDIUM
IBM Cognos Analytics <12.0.0 - Info Disclosure
Feb 26, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-50955
LOW
IBM InfoSphere Information Server 11.7 - Authenticated Path Traversal
Feb 21, 2024
CVSS 2.4
EPSS 0.00
CVE-2023-33843
MEDIUM
IBM InfoSphere Information Server 11.7 - XSS
Feb 21, 2024
CVSS 5.4
EPSS 0.00
CVE-2023-50306
MEDIUM
IBM Common Licensing 9.0 - Username Enumeration via Observable Response Discrepancy
Feb 20, 2024
CVSS 4.0
EPSS 0.00
CVE-2023-50951
MEDIUM
IBM Cloud Pak for Security 1.10.0.0-1.10.11.0 & QRadar Suite 1.10.12.0-1.10.17.0 - Sensitive Info Disclosure in Logs
Feb 17, 2024
CVSS 4.0
EPSS 0.00
CVE-2023-46186
MEDIUM
IBM Jazz for Service Management <1.1.3.20 - Info Disclosure
Feb 14, 2024
CVSS 5.3
EPSS 0.00
Products
websphere_application_server 444
aix 393
db2 327
rational_quality_manager 202
sterling_b2b_integrator 195
infosphere_information_server 188
qradar_security_information_and_event_manager 187
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 102
sterling_file_gateway 93
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
vios 85
rational_software_architect_design_manager 81
api_connect 79
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
smartcloud_control_desk 65
urbancode_deploy 63
Quick Filters