ibm
8,173 tracked vulnerabilities.
CVE-2023-47707
MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.2 - Cross-Site Scripting
Dec 20, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-47705
MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.1 Username Manipulation via Input Validation
Dec 20, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-47703
MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.2 - Sensitive Information Exposure via Error Message
Dec 20, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-47702
MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.2 - Path Traversal via URL Request
Dec 20, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-47706
MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.2 - Unrestricted File Upload
Dec 20, 2023
CVSS 6.6
EPSS 0.00
CVE-2023-47704
MEDIUM
IBM Security Guardium Key Lifecycle Manager 4.2.0-4.2.0.2 - Use of Hard-coded Credentials
Dec 20, 2023
CVSS 4.0
EPSS 0.00
CVE-2023-47161
MEDIUM
IBM UrbanCode Deploy 7.0.0.0-7.0.5.18 - Denial of Service via Archive File Upload
Dec 20, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-42013
MEDIUM
IBM UrbanCode Deploy 7.0.0.0-7.0.5.18 - Information Disclosure via Error Message
Dec 20, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-42012
MEDIUM
IBM UrbanCode Deploy 7.2.0.0-7.2.3.7 and 7.3.0.0-7.3.2.2 - Denial of Service via Windows Service Path
Dec 20, 2023
CVSS 6.2
EPSS 0.00
CVE-2023-45172
MEDIUM
IBM AIX 7.2-7.3 and VIOS 3.1 - Denial of Service via AIX Windows
Dec 19, 2023
CVSS 6.2
EPSS 0.00
CVE-2023-47146
MEDIUM
IBM QRadar SIEM 7.5 - Authenticated Exposure of Sensitive Domain Information
Dec 19, 2023
CVSS 4.9
EPSS 0.00
CVE-2023-42015
MEDIUM
IBM UrbanCode Deploy 7.1.0.0-7.1.2.14, 7.2.0.0-7.2.3.7, 7.3.0.0-7.3.2.2 - HTML Injection in Web UI
Dec 19, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-40691
MEDIUM
IBM Cloud Pak for Business Automation <22.0.2 - Info Disclosure
Dec 18, 2023
CVSS 4.9
EPSS 0.00
CVE-2023-47741
MEDIUM
IBM i 7.3-7.5 and Db2 Mirror for i 7.4-7.5 - Insufficiently Protected Credentials in Web Browser Client
Dec 18, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-46177
MEDIUM
IBM MQ Appliance <9.3 - Path Traversal
Dec 18, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-45185
HIGH
IBM i Access Client Solutions 1.1.2-1.1.4 and 1.1.4.3-1.1.9.3 - Remote Code Execution via Improper Authority Checks
Dec 14, 2023
CVSS 7.4
EPSS 0.02
CVE-2023-45182
HIGH
IBM i Access Client Solutions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3 - Information Disclosure
Dec 14, 2023
CVSS 7.4
EPSS 0.01
CVE-2023-45184
MEDIUM
IBM i Access Client Solutions <1.1.2, 1.1.4.3-1.1.9.3 - Info Disclo...
Dec 14, 2023
CVSS 6.2
EPSS 0.08
CVE-2023-43042
HIGH
IBM SAN Volume Controller - Info Disclosure
Dec 14, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-45174
HIGH
IBM AIX 7.2-7.3 and VIOS 3.1 - Privilege Escalation or Denial of Service via qdaemon Command
Dec 13, 2023
CVSS 8.4
EPSS 0.00
CVE-2023-45170
HIGH
IBM AIX 7.2-7.3 and VIOS 3.1 - Privilege Escalation or Denial of Service via piobe Command
Dec 13, 2023
CVSS 8.4
EPSS 0.00
CVE-2023-45166
HIGH
IBM AIX <7.4 - Privilege Escalation
Dec 13, 2023
CVSS 8.4
EPSS 0.00
CVE-2023-49878
MEDIUM
IBM Virtualization Engine TS7700 Firmware < 8.52.103.23 / < 8.53.1.21 - Sensitive Information Exposure
Dec 13, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-49877
MEDIUM
IBM Virtualization Engine TS7700 Firmware < 8.52.103.23 / < 8.53.1.21 - Sensitive Information Exposure
Dec 13, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-47722
MEDIUM
IBM API Connect V10.0.5.3 and V10.0.6.0 - Insufficiently Protected Credentials
Dec 09, 2023
CVSS 6.2
EPSS 0.00
Products
websphere_application_server 444
aix 393
db2 327
rational_quality_manager 202
sterling_b2b_integrator 195
infosphere_information_server 188
qradar_security_information_and_event_manager 187
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 102
sterling_file_gateway 93
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
vios 85
rational_software_architect_design_manager 81
api_connect 79
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
smartcloud_control_desk 65
urbancode_deploy 63
Quick Filters