ibm

8,173 tracked vulnerabilities.

CVE-2023-50957 HIGH
IBM Storage Defender - Resiliency Service 2.0 - Cleartext Storage of Sensitive Information
Feb 10, 2024
CVSS 8.0
EPSS 0.00
CVE-2023-45191 HIGH
IBM Engineering Lifecycle Optimization 7.0.2 and 7.0.3 - Inadequate Account Lockout Setting
Feb 09, 2024
CVSS 7.5
EPSS 0.00
CVE-2023-45190 MEDIUM
IBM Engineering Lifecycle Optimization 7.0.2-7.0.3 - HTTP Header Injection via HOST Header
Feb 09, 2024
CVSS 5.1
EPSS 0.00
CVE-2023-45187 MEDIUM
IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 - Insufficient Session Expiration
Feb 09, 2024
CVSS 6.3
EPSS 0.00
CVE-2023-42016 MEDIUM
IBM Sterling B2B Integrator 6.0.0.0-6.0.3.8 & 6.1.0.0-6.1.2.3 Cleartext Session Cookie Transmission
Feb 09, 2024
CVSS 4.3
EPSS 0.00
CVE-2023-32341 MEDIUM
IBM Sterling B2B Integrator 6.0.0.0-6.0.3.8 & 6.1.0.0-6.1.2.3 DoS via Resource Consumption
Feb 09, 2024
CVSS 6.5
EPSS 0.00
CVE-2023-47700 MEDIUM
IBM Storage Virtualize 8.6 - Improper Certificate Validation
Feb 07, 2024
CVSS 5.9
EPSS 0.00
CVE-2023-43017 HIGH
IBM Security Verify Access <10.0.6.1 - Privilege Escalation
Feb 07, 2024
CVSS 8.2
EPSS 0.00
CVE-2023-38369 MEDIUM
IBM Security Access Manager Container <10.0.6.1 - Info Disclosure
Feb 07, 2024
CVSS 6.2
EPSS 0.00
CVE-2023-32330 HIGH
IBM Security Verify Access 10.0.0.0-10.0.6.1 - Improper Certificate Validation
Feb 07, 2024
CVSS 7.5
EPSS 0.00
CVE-2023-32328 HIGH
IBM Security Verify Access 10.0.0.0-10.0.6.1 - Cleartext Transmission of Sensitive Information
Feb 07, 2024
CVSS 7.5
EPSS 0.00
CVE-2023-31002 MEDIUM
IBM Security Access Manager Container <10.0.6.1 - Info Disclosure
Feb 07, 2024
CVSS 5.1
EPSS 0.00
CVE-2023-46183 MEDIUM
IBM PowerVM Hypervisor - Info Disclosure
Feb 06, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-50947 MEDIUM
IBM Business Automation Workflow 22.0.2, 23.0.1, 23.0.2 - Stored Cross-Site Scripting
Feb 04, 2024
CVSS 5.4
EPSS 0.00
CVE-2023-33851 MEDIUM
IBM PowerVM Hypervisor - Info Disclosure
Feb 04, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-43016 HIGH
IBM Security Verify Access - Auth Bypass
Feb 03, 2024
CVSS 7.3
EPSS 0.00
CVE-2023-32329 MEDIUM
IBM Security Verify Access 10.0.0.0-10.0.6.1 - Improper File Validation
Feb 03, 2024
CVSS 6.2
EPSS 0.00
CVE-2023-32327 HIGH
IBM Security Verify Access 10.0.0.0-10.0.6.1 - XML External Entity Injection
Feb 03, 2024
CVSS 7.1
EPSS 0.00
CVE-2023-31006 MEDIUM
IBM Security Verify Access 10.0.0.0-10.0.6.1 - Denial of Service via DSC Server
Feb 03, 2024
CVSS 6.5
EPSS 0.00
CVE-2023-31005 MEDIUM
IBM Security Verify Access - Privilege Escalation
Feb 03, 2024
CVSS 6.2
EPSS 0.00
CVE-2023-31004 HIGH
IBM Security Verify Access - Privilege Escalation
Feb 03, 2024
CVSS 8.3
EPSS 0.00
CVE-2023-30999 HIGH
IBM Security Verify Access 10.0.0.0-10.0.6.1 - Denial of Service via Uncontrolled Resource Consumption
Feb 03, 2024
CVSS 7.5
EPSS 0.00
CVE-2023-38273 HIGH
IBM Cloud Pak System <2.3.3.7 - Info Disclosure
Feb 02, 2024
CVSS 7.5
EPSS 0.00
CVE-2023-47142 HIGH
IBM Tivoli Application Dependency Discovery Manager 7.3.0.0-7.3.0.10 - Privilege Escalation via Unauthorized API Access
Feb 02, 2024
CVSS 7.5
EPSS 0.00
CVE-2023-47148 MEDIUM
IBM Spectrum Protect Plus 10.1.0-10.1.15.2 - Sensitive Information Exposure via Unsecured Endpoints
Feb 02, 2024
CVSS 5.3
EPSS 0.00