VendorsIBMaixall versions
Vulnerabilities

IBM AIX

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

992CVEs
CVE-2020-4320
IBM MQ Appliance and IBM MQ AMQP Channels 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD do not correctly block or allow clients based on the certificate distinguished name SSLPEER setting. IBM X-Force ID: 177403.
Published 2020-06-16 · Modified
6.5EPSS 0.007
CVE-2024-27254
IBM Db2 for Linux, UNIX and Windows denial of service
Published 2024-04-03 · Analyzed
6.5EPSS 0.007
CVE-2022-40235
"IBM InfoSphere Information Server 11.7 could allow a user to cause a denial of service by removing the ability to run jobs due to improper input validation. IBM X-Force ID: 235725."
Published 2022-11-03 · Modified
6.5EPSS 0.007
CVE-2021-39087
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5, 6.1.0.0 through 6.1.0.4, and 6.1.1.0 through 6.1.1.1 could allow an authenticated user to obtain sensitive information due to improper permission controls. IBM X-Force ID: 216109.
Published 2022-08-16 · Modified
6.5EPSS 0.006
CVE-2022-36772
IBM InfoSphere Information Server 11.7 could allow an authenticated user to obtain sensitive information that should only be available to a privileged user.
Published 2022-10-07 · Modified
6.5EPSS 0.006
CVE-2019-4738
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.1 discloses sensitive information to an authenticated user from the dashboard UI which could be used in further attacks against the system. IBM X-Force ID: 172753.
Published 2020-12-10 · Modified
6.5EPSS 0.005
CVE-2023-35898
IBM InfoSphere Information Server information disclosure
Published 2023-07-19 · Modified
6.5EPSS 0.005
CVE-2021-29683
IBM Security Identity Manager 7.0.2 stores user credentials in plain clear text which can be read by an authenticated user. IBM X-Force ID: 199998.
Published 2021-05-20 · Modified
6.5EPSS 0.005
CVE-2022-22442
"IBM InfoSphere Information Server 11.7 could allow an authenticated user to access information restricted to users with elevated privileges due to improper access controls. IBM X-Force ID: 224427."
Published 2022-11-03 · Modified
6.5EPSS 0.005
CVE-2023-30443
IBM Db2 denial of service
Published 2024-12-19 · Analyzed
6.5EPSS 0.005
CVE-2020-4675
IBM InfoSphere Master Data Management Server 11.6 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 186324.
Published 2021-07-16 · Modified
6.5EPSS 0.005
CVE-2024-22340
IBM Common Cryptographic Architecture information disclosure
Published 2025-03-11 · Analyzed
6.5EPSS 0.004
CVE-2022-41291
IBM InfoSphere Information Server 11.7 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 236699.
Published 2022-10-07 · Modified
6.5EPSS 0.004
CVE-2022-22496
While a user account for the IBM Spectrum Protect Server 8.1.0.000 through 8.1.14 is being established, it may be configured to use SESSIONSECURITY=TRANSITIONAL. While in this mode, it may be susceptible to an offline dictionary attack. IBM X-Force ID: 226942.
Published 2022-06-30 · Modified
6.5EPSS 0.004
CVE-2024-49823
IBM Common Cryptographic Architecture denial of service
Published 2025-03-11 · Analyzed
6.5EPSS 0.004
CVE-2021-29816
IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 204341.
Published 2021-09-23 · Modified
6.5EPSS 0.004
CVE-2023-29260
IBM Sterling Connect:Express for UNIX server-side request forgery
Published 2023-07-19 · Modified
6.5EPSS 0.003
CVE-2026-16964
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
6.5EPSS 0.003
CVE-2023-23472
IBM InfoSphere Information Server information disclosure
Published 2024-12-11 · Analyzed
6.5EPSS 0.003
CVE-2024-49808
IBM Sterling Connect:Direct Web Services improper authorization
Published 2025-04-18 · Analyzed
6.5EPSS 0.003
CVE-2022-22371
IBM Sterling B2B Integrator Standard Edition session fixation
Published 2023-01-04 · Modified
6.5EPSS 0.003
CVE-2024-45651
IBM Sterling Connect:Direct Web Services session fixation
Published 2025-04-18 · Analyzed
6.5EPSS 0.003
CVE-2026-16846
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
6.5EPSS 0.003
CVE-2025-33096
IBM Engineering Requirements Management Doors Next denial of service
Published 2025-10-12 · Analyzed
6.5EPSS 0.003
CVE-2024-51477
IBM InfoSphere Information Server information disclosure
Published 2025-03-28 · Analyzed
6.5EPSS 0.003
CVE-2025-33126
Fixes to common vulnerabilities found in IBM Db2 High Performance Unload
Published 2025-10-27 · Analyzed
6.5EPSS 0.003
CVE-2025-33131
Fixes to common vulnerabilities found in IBM Db2 High Performance Unload
Published 2025-10-27 · Analyzed
6.5EPSS 0.003
CVE-2025-33132
Fixes to common vulnerabilities found in IBM Db2 High Performance Unload
Published 2025-10-27 · Analyzed
6.5EPSS 0.003
CVE-2025-33133
Fixes to common vulnerabilities found in IBM Db2 High Performance Unload
Published 2025-10-27 · Analyzed
6.5EPSS 0.003
CVE-2026-17424
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
6.5EPSS 0.003
CVE-2023-50946
IBM Common Licensing information disclosure
Published 2025-01-26 · Analyzed
6.5EPSS 0.003
CVE-2022-22423
IBM Common Cryptographic Architecture (CCA 5.x MTM for 4767 and CCA 7.x MTM for 4769) could allow a local user to cause a denial of service due to improper input validation. IBM X-Force ID: 223596.
Published 2022-09-23 · Modified
6.5EPSS 0.003
CVE-2024-43186
IBM InfoSphere Information Server information disclosure
Published 2025-03-28 · Analyzed
6.5EPSS 0.003
CVE-2025-14810
IBM InfoSphere Information Server is vulnerable due to insufficient session expiration
Published 2026-03-25 · Analyzed
6.5EPSS 0.002
CVE-2025-14807
IBM InfoSphere Information Server is vulnerable to HTTP header injection
Published 2026-03-25 · Analyzed
6.5EPSS 0.002
CVE-2026-1014
IBM InfoSphere Information Server is vulnerable due to disclosure of sensitive information
Published 2026-03-25 · Analyzed
6.5EPSS 0.002
CVE-2025-14790
IBM InfoSphere Information Server is vulnerable to disclosure of sensitive information
Published 2026-03-25 · Analyzed
6.5EPSS 0.002
CVE-2026-17195
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
6.5EPSS 0.001
CVE-2026-19653
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
6.5EPSS 0.001
CVE-2020-4757
IBM FileNet Content Manager and IBM Content Navigator 3.0.CD is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 188600.
Published 2020-12-21 · Modified
6.4EPSS 0.013
← Prev16 / 25Next →