ibm

8,173 tracked vulnerabilities.

CVE-2023-33852 HIGH
IBM Security Guardium 11.4 - SQL Injection
Aug 27, 2023
CVSS 7.6
EPSS 0.00
CVE-2023-30437 MEDIUM
IBM Security Guardium <11.6 - Info Disclosure
Aug 27, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-30436 MEDIUM
IBM Security Guardium 11.3-11.5 - Stored Cross-Site Scripting
Aug 27, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-30435 HIGH
IBM Security Guardium 11.3-11.5 - Stored Cross-Site Scripting
Aug 27, 2023
CVSS 8.9
EPSS 0.00
CVE-2023-40371 MEDIUM
IBM AIX 7.2-7.3 and VIOS 3.1 - Improper Access Control in OpenSSH
Aug 24, 2023
CVSS 6.2
EPSS 0.00
CVE-2023-40370 LOW
IBM Robotic Process Automation 21.0.0-21.0.7.1 - Information Disclosure via Remote REST Request Computer Policy
Aug 22, 2023
CVSS 3.7
EPSS 0.00
CVE-2023-38734 MEDIUM
IBM Robotic Process Automation <23.0.1 - Privilege Escalation
Aug 22, 2023
CVSS 6.6
EPSS 0.00
CVE-2023-38733 MEDIUM
IBM Robotic Process Automation <23.0.1 - Info Disclosure
Aug 22, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-33850 HIGH
IBM TXSeries for Multiplatform - Timing-Based Side Channel in RSA Decryption
Aug 22, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-38732 MEDIUM
IBM Robotic Process Automation <21.0.8 - Info Disclosure
Aug 22, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-35011 MEDIUM
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 - Authenticated Server-Side Request Forgery
Aug 16, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-35009 MEDIUM
IBM Cognos Analytics 11.1.7, 11.2.0, 11.2.1 - Unauthenticated Sensitive Information Exposure
Aug 16, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-35893 CRITICAL
IBM Security Guardium <11.5 - Command Injection
Aug 16, 2023
CVSS 9.9
EPSS 0.00
CVE-2023-38737 MEDIUM
IBM WebSphere Application Server Liberty <23.0.0.7 - DoS
Aug 16, 2023
CVSS 5.9
EPSS 0.00
CVE-2023-38741 HIGH
IBM TXSeries for Multiplatforms <9.1 - DoS
Aug 14, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-38721 HIGH
IBM i 7.2-7.5 - Local Privilege Escalation via Facsimile Support
Aug 14, 2023
CVSS 8.4
EPSS 0.00
CVE-2023-23476 LOW
IBM Robotic Process Automation 21.0.0-21.0.7.latest - Unauthorized Data Access via Insufficient API Authorization
Aug 02, 2023
CVSS 3.1
EPSS 0.00
CVE-2023-24971 HIGH
IBM B2B Advanced Communications 1.0.0.0 & Multi-Enterprise Integration Gateway 1.0.0.1 DoS via Java Deserialization
Jul 31, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-22595 MEDIUM
IBM B2B Advanced Communications 1.0.0.0 and Multi-Enterprise Integration Gateway 1.0.0.1 - Cross-Site Scripting
Jul 31, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-35019 HIGH
IBM Security Verify Governance 10.0 - Authenticated OS Command Injection
Jul 31, 2023
CVSS 7.2
EPSS 0.00
CVE-2023-35016 MEDIUM
IBM Security Verify Governance 10.0 - Path Traversal via URL Request
Jul 31, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-28530 MEDIUM
IBM Cognos Analytics 11.1.0-11.1.7 - Stored Cross-Site Scripting via SVG Files in Custom Visualizations
Jul 22, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-25929 MEDIUM
IBM Cognos Analytics 11.1.0-11.1.7 - Cross-Site Scripting
Jul 22, 2023
CVSS 4.6
EPSS 0.00
CVE-2023-29260 MEDIUM
IBM Sterling Connect:Express for UNIX 1.5 - SSRF
Jul 19, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-29259 LOW
IBM Sterling Connect:Express for UNIX 1.5 - CSRF
Jul 19, 2023
CVSS 3.7
EPSS 0.00