ibm

8,173 tracked vulnerabilities.

CVE-2023-47707 MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.2 - Cross-Site Scripting
Dec 20, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-47705 MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.1 Username Manipulation via Input Validation
Dec 20, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-47703 MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.2 - Sensitive Information Exposure via Error Message
Dec 20, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-47702 MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.2 - Path Traversal via URL Request
Dec 20, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-47706 MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.2 - Unrestricted File Upload
Dec 20, 2023
CVSS 6.6
EPSS 0.00
CVE-2023-47704 MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.2 - Use of Hard-coded Credentials
Dec 20, 2023
CVSS 4.0
EPSS 0.00
CVE-2023-47161 MEDIUM
IBM UrbanCode Deploy 7.0.0.0-7.0.5.18 - Denial of Service via Archive File Upload
Dec 20, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-42013 MEDIUM
IBM UrbanCode Deploy 7.0.0.0-7.0.5.18 - Information Disclosure via Error Message
Dec 20, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-42012 MEDIUM
IBM UrbanCode Deploy 7.2.0.0-7.2.3.7 and 7.3.0.0-7.3.2.2 - Denial of Service via Windows Service Path
Dec 20, 2023
CVSS 6.2
EPSS 0.00
CVE-2023-45172 MEDIUM
IBM AIX 7.2-7.3 and VIOS 3.1 - Denial of Service via AIX Windows
Dec 19, 2023
CVSS 6.2
EPSS 0.00
CVE-2023-47146 MEDIUM
IBM QRadar SIEM 7.5 - Authenticated Exposure of Sensitive Domain Information
Dec 19, 2023
CVSS 4.9
EPSS 0.00
CVE-2023-42015 MEDIUM
IBM UrbanCode Deploy 7.1.0.0-7.1.2.14, 7.2.0.0-7.2.3.7, 7.3.0.0-7.3.2.2 - HTML Injection in Web UI
Dec 19, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-40691 MEDIUM
IBM Cloud Pak for Business Automation <22.0.2 - Info Disclosure
Dec 18, 2023
CVSS 4.9
EPSS 0.00
CVE-2023-47741 MEDIUM
IBM i 7.3-7.5 and Db2 Mirror for i 7.4-7.5 - Insufficiently Protected Credentials in Web Browser Client
Dec 18, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-46177 MEDIUM
IBM MQ Appliance <9.3 - Path Traversal
Dec 18, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-45185 HIGH
IBM i Access Client Solutions 1.1.2-1.1.4 and 1.1.4.3-1.1.9.3 - Remote Code Execution via Improper Authority Checks
Dec 14, 2023
CVSS 7.4
EPSS 0.02
CVE-2023-45182 HIGH
IBM i Access Client Solutions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3 - Information Disclosure
Dec 14, 2023
CVSS 7.4
EPSS 0.01
CVE-2023-45184 MEDIUM
IBM i Access Client Solutions <1.1.2, 1.1.4.3-1.1.9.3 - Info Disclo...
Dec 14, 2023
CVSS 6.2
EPSS 0.08
CVE-2023-43042 HIGH
IBM SAN Volume Controller - Info Disclosure
Dec 14, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-45174 HIGH
IBM AIX 7.2-7.3 and VIOS 3.1 - Privilege Escalation or Denial of Service via qdaemon Command
Dec 13, 2023
CVSS 8.4
EPSS 0.00
CVE-2023-45170 HIGH
IBM AIX 7.2-7.3 and VIOS 3.1 - Privilege Escalation or Denial of Service via piobe Command
Dec 13, 2023
CVSS 8.4
EPSS 0.00
CVE-2023-45166 HIGH
IBM AIX <7.4 - Privilege Escalation
Dec 13, 2023
CVSS 8.4
EPSS 0.00
CVE-2023-49878 MEDIUM
IBM Virtualization Engine TS7700 Firmware < 8.52.103.23 / < 8.53.1.21 - Sensitive Information Exposure
Dec 13, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-49877 MEDIUM
IBM Virtualization Engine TS7700 Firmware < 8.52.103.23 / < 8.53.1.21 - Sensitive Information Exposure
Dec 13, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-47722 MEDIUM
IBM API Connect V10.0.5.3 and V10.0.6.0 - Insufficiently Protected Credentials
Dec 09, 2023
CVSS 6.2
EPSS 0.00