VendorsIBMaixany version
Vulnerabilities

IBM AIX any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

620CVEs
CVE-2022-22496
While a user account for the IBM Spectrum Protect Server 8.1.0.000 through 8.1.14 is being established, it may be configured to use SESSIONSECURITY=TRANSITIONAL. While in this mode, it may be susceptible to an offline dictionary attack. IBM X-Force ID: 226942.
Published 2022-06-30 · Modified
6.5EPSS 0.004
CVE-2024-49823
IBM Common Cryptographic Architecture denial of service
Published 2025-03-11 · Analyzed
6.5EPSS 0.004
CVE-2021-29816
IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 204341.
Published 2021-09-23 · Modified
6.5EPSS 0.004
CVE-2023-29260
IBM Sterling Connect:Express for UNIX server-side request forgery
Published 2023-07-19 · Modified
6.5EPSS 0.003
CVE-2026-16964
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
6.5EPSS 0.003
CVE-2023-23472
IBM InfoSphere Information Server information disclosure
Published 2024-12-11 · Analyzed
6.5EPSS 0.003
CVE-2024-49808
IBM Sterling Connect:Direct Web Services improper authorization
Published 2025-04-18 · Analyzed
6.5EPSS 0.003
CVE-2022-22371
IBM Sterling B2B Integrator Standard Edition session fixation
Published 2023-01-04 · Modified
6.5EPSS 0.003
CVE-2024-45651
IBM Sterling Connect:Direct Web Services session fixation
Published 2025-04-18 · Analyzed
6.5EPSS 0.003
CVE-2026-16846
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
6.5EPSS 0.003
CVE-2025-33096
IBM Engineering Requirements Management Doors Next denial of service
Published 2025-10-12 · Analyzed
6.5EPSS 0.003
CVE-2024-51477
IBM InfoSphere Information Server information disclosure
Published 2025-03-28 · Analyzed
6.5EPSS 0.003
CVE-2025-33131
Fixes to common vulnerabilities found in IBM Db2 High Performance Unload
Published 2025-10-27 · Analyzed
6.5EPSS 0.003
CVE-2025-33132
Fixes to common vulnerabilities found in IBM Db2 High Performance Unload
Published 2025-10-27 · Analyzed
6.5EPSS 0.003
CVE-2025-33133
Fixes to common vulnerabilities found in IBM Db2 High Performance Unload
Published 2025-10-27 · Analyzed
6.5EPSS 0.003
CVE-2025-33126
Fixes to common vulnerabilities found in IBM Db2 High Performance Unload
Published 2025-10-27 · Analyzed
6.5EPSS 0.003
CVE-2026-17424
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
6.5EPSS 0.003
CVE-2023-50946
IBM Common Licensing information disclosure
Published 2025-01-26 · Analyzed
6.5EPSS 0.003
CVE-2022-22423
IBM Common Cryptographic Architecture (CCA 5.x MTM for 4767 and CCA 7.x MTM for 4769) could allow a local user to cause a denial of service due to improper input validation. IBM X-Force ID: 223596.
Published 2022-09-23 · Modified
6.5EPSS 0.003
CVE-2024-43186
IBM InfoSphere Information Server information disclosure
Published 2025-03-28 · Analyzed
6.5EPSS 0.003
CVE-2025-14810
IBM InfoSphere Information Server is vulnerable due to insufficient session expiration
Published 2026-03-25 · Analyzed
6.5EPSS 0.002
CVE-2025-14807
IBM InfoSphere Information Server is vulnerable to HTTP header injection
Published 2026-03-25 · Analyzed
6.5EPSS 0.002
CVE-2026-1014
IBM InfoSphere Information Server is vulnerable due to disclosure of sensitive information
Published 2026-03-25 · Analyzed
6.5EPSS 0.002
CVE-2025-14790
IBM InfoSphere Information Server is vulnerable to disclosure of sensitive information
Published 2026-03-25 · Analyzed
6.5EPSS 0.002
CVE-2026-17195
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
6.5EPSS 0.001
CVE-2026-19653
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
6.5EPSS 0.001
CVE-2020-4757
IBM FileNet Content Manager and IBM Content Navigator 3.0.CD is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 188600.
Published 2020-12-21 · Modified
6.4EPSS 0.013
CVE-2022-35721
IBM Jazz for Service Management 1.1.3 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 231380.
Published 2022-09-23 · Modified
6.4EPSS 0.007
CVE-2021-29810
IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204279.
Published 2021-09-23 · Modified
6.4EPSS 0.005
CVE-2021-29812
IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204330.
Published 2021-09-23 · Modified
6.4EPSS 0.005
CVE-2021-29813
IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204331.
Published 2021-09-23 · Modified
6.4EPSS 0.005
CVE-2021-29814
IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204334.
Published 2021-09-23 · Modified
6.4EPSS 0.005
CVE-2021-29815
IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204340.
Published 2021-09-23 · Modified
6.4EPSS 0.005
CVE-2021-29832
IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204824.
Published 2021-09-23 · Modified
6.4EPSS 0.005
CVE-2021-29833
IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204825.
Published 2021-09-23 · Modified
6.4EPSS 0.005
CVE-2021-38877
IBM Jazz for Service Management 1.1.3.10 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 208405.
Published 2021-09-23 · Modified
6.4EPSS 0.005
CVE-2024-31914
IBM Sterling B2B Integrator cross-site scripting
Published 2025-01-06 · Analyzed
6.4EPSS 0.002
CVE-2025-23227
IBM Tivoli Application Dependency Discovery Manager cross-site scripting
Published 2025-01-23 · Analyzed
6.4EPSS 0.002
CVE-2024-49339
IBM Financial Transaction Manager cross-site scripting
Published 2025-01-31 · Analyzed
6.4EPSS 0.002
CVE-2025-3630
IBM Sterling B2B Integrator and IBM Sterling File Gateway cross-site scripting
Published 2025-07-08 · Analyzed
6.4EPSS 0.002
← Prev10 / 16Next →