VendorsIBMaixany version
Vulnerabilities

IBM AIX any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

620CVEs
CVE-2023-33849
IBM CICS TX information disclosure
Published 2023-06-07 · Modified
3.7EPSS 0.004
CVE-2024-41760
IBM Common Cryptographic Architecture information disclosure
Published 2025-03-11 · Analyzed
3.7EPSS 0.003
CVE-2026-16890
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
3.6EPSS 0.001
CVE-2009-5062
IBM Lotus Quickr 8.1 before 8.1.0.15 services for Lotus Domino on AIX allows remote authenticated users to cause a denial of service (daemon crash) by subscribing to an Atom feed, aka SPR JRIE7VKMP9.
Published 2011-03-22 · Modified
3.5EPSS 0.008
CVE-2025-2139
IBM Engineering Requirements Management Doors Next security bypass
Published 2025-10-12 · Analyzed
3.5EPSS 0.002
CVE-2025-2138
IBM Engineering Requirements Management Doors Next data modification
Published 2025-10-12 · Analyzed
3.5EPSS 0.002
CVE-2013-6335
The Backup-Archive client in IBM Tivoli Storage Manager (TSM) for Space Management 5.x and 6.x before 6.2.5.3, 6.3.x before 6.3.2, 6.4.x before 6.4.2, and 7.1.x before 7.1.0.3 on Linux and AIX, and 5.x and 6.x before 6.1.5.6 on Solaris and HP-UX, does not preserve file permissions across backup and restore operations, which allows local users to bypass intended access restrictions via standard filesystem operations.
Published 2014-08-26 · Modified
3.3EPSS 0.003
CVE-2020-4629
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a local user with specialized access to obtain sensitive information from a detailed technical error message. This information could be used in further attacks against the system. IBM X-Force ID: 185370.
Published 2020-09-30 · Modified
3.3EPSS 0.003
CVE-2025-8732
libxml2 xmlcatalog xmlParseSGMLCatalog recursion
Published 2025-08-08 · Analyzed
3.3EPSS 0.002
CVE-2020-4591
IBM Spectrum Protect Server 8.1.0.000 through 8.1.10.000 could disclose sensitive information in nondefault settings due to occasionally not encrypting the second chunk of an object in an encrypted container pool. IBM X-Force ID: 184746.
Published 2020-08-28 · Modified
3.3EPSS 0.002
CVE-2026-16891
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
3.3EPSS 0.001
CVE-2011-4160
Unspecified vulnerability in HP Operations Agent 11.00 and Performance Agent 4.73 and 5.0 on AIX, HP-UX, Linux, and Solaris allows local users to bypass intended directory-access restrictions via unknown vectors.
Published 2011-11-24 · Modified
3.2EPSS 0.003
CVE-2025-14808
IBM InfoSphere Information Server is vulnerable due to disclosure of sensitive information
Published 2026-03-25 · Analyzed
3.1EPSS 0.002
CVE-2026-0992
Libxml2: libxml2: denial of service via crafted xml catalogs
Published 2026-01-15 · Analyzed
2.9EPSS 0.005
CVE-2024-52905
IBM Sterling B2B Integrator information disclosure
Published 2025-03-10 · Analyzed
2.7EPSS 0.003
CVE-2014-4805
IBM DB2 10.5 before FP4 on Linux and AIX creates temporary files during CDE table LOAD operations, which allows local users to obtain sensitive information by reading a file while a LOAD is occurring.
Published 2014-09-04 · Modified
2.1EPSS 0.004
CVE-2009-1292
UCM-CQ in IBM Rational ClearCase 7.0.0.x before 7.0.0.5, 7.0.1.x before 7.0.1.4, and 7.1.x before 7.1.0.1 on Linux and AIX places a username and password on the command line, which allows local users to obtain credentials by listing the process.
Published 2009-04-14 · Modified
2.1EPSS 0.004
CVE-2002-0790
clchkspuser and clpasswdremote in AIX expose an encrypted password in the cspoc.log file, which could allow local users to gain privileges.
Published 2003-04-02 · Modified
2.1EPSS 0.004
CVE-2002-1687
Buffer overflow in the diagnostics library in AIX allows local users to "cause data and instructions to be overwritten" via a long DIAGNOSTICS environment variable.
Published 2005-06-21 · Modified
2.1EPSS 0.003
CVE-2014-6195
The (1) Java GUI and (2) Web GUI components in the IBM Tivoli Storage Manager (TSM) Backup-Archive client 5.4 and 5.5 before 5.5.4.4 on AIX, Linux, and Solaris; 5.4.x and 5.5.x on Windows and z/OS; 6.1 before 6.1.5.7 on z/OS; 6.1 and 6.2 before 6.2.5.2 on Windows, before 6.2.5.3 on AIX and Linux x86, and before 6.2.5.4 on Linux Z and Solaris; 6.3 before 6.3.2.1 on AIX, before 6.3.2.2 on Windows, and before 6.3.2.3 on Linux; 6.4 before 6.4.2.1; and 7.1 before 7.1.1 in IBM TSM for Mail, when the Data Protection for Lotus Domino component is used, allow local users to bypass authentication and restore a Domino database or transaction-log backup via unspecified vectors.
Published 2015-02-14 · Modified
1.9EPSS 0.004
← Prev16 / 16