ibm
8,173 tracked vulnerabilities.
CVE-2023-33852
HIGH
IBM Security Guardium 11.4 - SQL Injection
Aug 27, 2023
CVSS 7.6
EPSS 0.00
CVE-2023-30437
MEDIUM
IBM Security Guardium <11.6 - Info Disclosure
Aug 27, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-30436
MEDIUM
IBM Security Guardium 11.3-11.5 - Stored Cross-Site Scripting
Aug 27, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-30435
HIGH
IBM Security Guardium 11.3-11.5 - Stored Cross-Site Scripting
Aug 27, 2023
CVSS 8.9
EPSS 0.00
CVE-2023-40371
MEDIUM
IBM AIX 7.2-7.3 and VIOS 3.1 - Improper Access Control in OpenSSH
Aug 24, 2023
CVSS 6.2
EPSS 0.00
CVE-2023-40370
LOW
IBM Robotic Process Automation 21.0.0-21.0.7.1 - Information Disclosure via Remote REST Request Computer Policy
Aug 22, 2023
CVSS 3.7
EPSS 0.00
CVE-2023-38734
MEDIUM
IBM Robotic Process Automation <23.0.1 - Privilege Escalation
Aug 22, 2023
CVSS 6.6
EPSS 0.00
CVE-2023-38733
MEDIUM
IBM Robotic Process Automation <23.0.1 - Info Disclosure
Aug 22, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-33850
HIGH
IBM TXSeries for Multiplatform - Timing-Based Side Channel in RSA Decryption
Aug 22, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-38732
MEDIUM
IBM Robotic Process Automation <21.0.8 - Info Disclosure
Aug 22, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-35011
MEDIUM
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 - Authenticated Server-Side Request Forgery
Aug 16, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-35009
MEDIUM
IBM Cognos Analytics 11.1.7, 11.2.0, 11.2.1 - Unauthenticated Sensitive Information Exposure
Aug 16, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-35893
CRITICAL
IBM Security Guardium <11.5 - Command Injection
Aug 16, 2023
CVSS 9.9
EPSS 0.00
CVE-2023-38737
MEDIUM
IBM WebSphere Application Server Liberty <23.0.0.7 - DoS
Aug 16, 2023
CVSS 5.9
EPSS 0.00
CVE-2023-38741
HIGH
IBM TXSeries for Multiplatforms <9.1 - DoS
Aug 14, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-38721
HIGH
IBM i 7.2-7.5 - Local Privilege Escalation via Facsimile Support
Aug 14, 2023
CVSS 8.4
EPSS 0.00
CVE-2023-23476
LOW
IBM Robotic Process Automation 21.0.0-21.0.7.latest - Unauthorized Data Access via Insufficient API Authorization
Aug 02, 2023
CVSS 3.1
EPSS 0.00
CVE-2023-24971
HIGH
IBM B2B Advanced Communications 1.0.0.0 & Multi-Enterprise Integration Gateway 1.0.0.1 DoS via Java Deserialization
Jul 31, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-22595
MEDIUM
IBM B2B Advanced Communications 1.0.0.0 and Multi-Enterprise Integration Gateway 1.0.0.1 - Cross-Site Scripting
Jul 31, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-35019
HIGH
IBM Security Verify Governance 10.0 - Authenticated OS Command Injection
Jul 31, 2023
CVSS 7.2
EPSS 0.00
CVE-2023-35016
MEDIUM
IBM Security Verify Governance 10.0 - Path Traversal via URL Request
Jul 31, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-28530
MEDIUM
IBM Cognos Analytics 11.1.0-11.1.7 - Stored Cross-Site Scripting via SVG Files in Custom Visualizations
Jul 22, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-25929
MEDIUM
IBM Cognos Analytics 11.1.0-11.1.7 - Cross-Site Scripting
Jul 22, 2023
CVSS 4.6
EPSS 0.00
CVE-2023-29260
MEDIUM
IBM Sterling Connect:Express for UNIX 1.5 - SSRF
Jul 19, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-29259
LOW
IBM Sterling Connect:Express for UNIX 1.5 - CSRF
Jul 19, 2023
CVSS 3.7
EPSS 0.00
Products
websphere_application_server 444
aix 393
db2 327
rational_quality_manager 202
sterling_b2b_integrator 195
infosphere_information_server 188
qradar_security_information_and_event_manager 187
maximo_asset_management 182
rational_doors_next_generation 153
rational_team_concert 142
rational_collaborative_lifecycle_management 141
rational_engineering_lifecycle_manager 141
websphere_portal 126
security_guardium 112
cognos_analytics 102
sterling_file_gateway 93
rational_rhapsody_design_manager 90
security_verify_access 90
websphere_mq 89
business_process_manager 88
lotus_domino 86
vios 85
rational_software_architect_design_manager 81
api_connect 79
lotus_notes 71
security_key_lifecycle_manager 70
db2_universal_database 66
concert 65
smartcloud_control_desk 65
urbancode_deploy 63
Quick Filters