ibm

8,173 tracked vulnerabilities.

CVE-2023-47745 MEDIUM
IBM MQ Operator Cleartext Transmission of Sensitive Information
Mar 03, 2024
CVSS 6.2
EPSS 0.00
CVE-2023-50312 MEDIUM
IBM WebSphere Application Server Liberty 17.0.0.3-24.0.0.2 - Use of a Broken or Risky Cryptographic Algorithm
Mar 01, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-47716 MEDIUM
IBM CP4BA - Filenet Content Manager 5.5.8.0, 5.5.10.0, 5.5.11.0 - Incorrect Authorization
Mar 01, 2024
CVSS 6.3
EPSS 0.00
CVE-2023-38366 MEDIUM
IBM Filenet Content Manager Component <5.5.11.0 - Path Traversal
Mar 01, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-50324 MEDIUM
IBM Cognos Command Center 10.2.4.1 and 10.2.5 - Exposure of Sensitive Information via X-AspNet-Version Response Header
Mar 01, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-50305 MEDIUM
IBM Engineering Requirements Management DOORS 9.7.2.7 - Info Disclo...
Mar 01, 2024
CVSS 5.1
EPSS 0.00
CVE-2023-28949 MEDIUM
IBM Engineering Requirements Management DOORS 9.7.2.7 - CSRF
Mar 01, 2024
CVSS 6.5
EPSS 0.00
CVE-2023-28525 MEDIUM
IBM Engineering Requirements Management <9.7.2.7 - XSS
Mar 01, 2024
CVSS 4.8
EPSS 0.00
CVE-2023-38367 MEDIUM
IBM Cloud Pak for Business Automation 18.0.0-22.0.2 - Unauthenticated CRUD Operations via Invalid Token
Feb 29, 2024
CVSS 6.5
EPSS 0.00
CVE-2023-27545 MEDIUM
IBM Cloud Pak for Data 4.6.0 - Sensitive Information Exposure via Browser Cache
Feb 29, 2024
CVSS 4.0
EPSS 0.00
CVE-2023-38372 MEDIUM
IBM Watson IoT Platform 1.0 - Privilege Escalation
Feb 29, 2024
CVSS 5.9
EPSS 0.00
CVE-2023-25926 MEDIUM
IBM Security Guardium Key Lifecycle Manager 3.0-4.1.1 - XML External Entity Injection
Feb 29, 2024
CVSS 5.5
EPSS 0.00
CVE-2023-25921 HIGH
IBM Security Guardium Key Lifecycle Manager 3.0-4.1.1 - Unrestricted Upload of File with Dangerous Type
Feb 29, 2024
CVSS 8.5
EPSS 0.00
CVE-2023-25925 HIGH
IBM Security Guardium Key Lifecycle Manager 3.0-4.1.1 - Authenticated Remote Code Execution
Feb 28, 2024
CVSS 8.5
EPSS 0.00
CVE-2023-25922 MEDIUM
IBM Security Guardium Key Lifecycle Manager 3.0-4.1.1 - Unrestricted Upload of File with Dangerous Type
Feb 28, 2024
CVSS 4.3
EPSS 0.00
CVE-2023-50303 MEDIUM
IBM InfoSphere Information Server 11.7 - Stored Cross-Site Scripting
Feb 28, 2024
CVSS 6.1
EPSS 0.00
CVE-2023-43051 MEDIUM
IBM Cognos Analytics <12.0.0 - XSS
Feb 26, 2024
CVSS 5.4
EPSS 0.00
CVE-2023-38359 MEDIUM
IBM Cognos Analytics <12.0.0 - XSS
Feb 26, 2024
CVSS 6.1
EPSS 0.00
CVE-2023-32344 MEDIUM
Netapp Oncommand Insight < 11.1.7 - CSRF
Feb 26, 2024
CVSS 4.3
EPSS 0.00
CVE-2023-30996 MEDIUM
IBM Cognos Analytics <12.0.0 - Info Disclosure
Feb 26, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-50955 LOW
IBM InfoSphere Information Server 11.7 - Authenticated Path Traversal
Feb 21, 2024
CVSS 2.4
EPSS 0.00
CVE-2023-33843 MEDIUM
IBM InfoSphere Information Server 11.7 - XSS
Feb 21, 2024
CVSS 5.4
EPSS 0.00
CVE-2023-50306 MEDIUM
IBM Common Licensing 9.0 - Username Enumeration via Observable Response Discrepancy
Feb 20, 2024
CVSS 4.0
EPSS 0.00
CVE-2023-50951 MEDIUM
IBM Cloud Pak for Security 1.10.0.0-1.10.11.0 & QRadar Suite 1.10.12.0-1.10.17.0 - Sensitive Info Disclosure in Logs
Feb 17, 2024
CVSS 4.0
EPSS 0.00
CVE-2023-46186 MEDIUM
IBM Jazz for Service Management <1.1.3.20 - Info Disclosure
Feb 14, 2024
CVSS 5.3
EPSS 0.00