VendorsIBMaixall versions
Vulnerabilities

IBM AIX

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

992CVEs
CVE-2023-33846
IBM CICS TX cross-site scripting
Published 2023-06-08 · Modified
5.4EPSS 0.005
CVE-2021-39035
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5, 6.1.0.0 through 6.1.0.4, and 6.1.1.0 through 6.1.1.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 213965.
Published 2022-08-16 · Modified
5.4EPSS 0.005
CVE-2022-34336
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 229714.
Published 2022-09-13 · Modified
5.4EPSS 0.005
CVE-2021-20448
IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 196624.
Published 2021-04-27 · Modified
5.4EPSS 0.005
CVE-2021-20549
IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199167.
Published 2021-04-27 · Modified
5.4EPSS 0.005
CVE-2021-20550
IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199168.
Published 2021-04-27 · Modified
5.4EPSS 0.005
CVE-2021-29771
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Published 2021-11-02 · Modified
5.4EPSS 0.005
CVE-2021-29841
IBM Financial Transaction Manager 3.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 205045.
Published 2021-09-14 · Modified
5.4EPSS 0.005
CVE-2021-29905
IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 207616.
Published 2021-09-23 · Modified
5.4EPSS 0.005
CVE-2023-47707
IBM Security Guardium Key Lifecycle Manager cross-site scripting
Published 2023-12-20 · Modified
5.4EPSS 0.004
CVE-2022-35642
"IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 227592."
Published 2022-11-03 · Modified
5.4EPSS 0.004
CVE-2022-47983
IBM InfoSphere Information Server cross-site scripting
Published 2023-02-01 · Modified
5.4EPSS 0.004
CVE-2022-30615
"IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 227592.
Published 2022-11-03 · Modified
5.4EPSS 0.004
CVE-2023-42009
IBM InfoSphere Information Server cross-site scripting
Published 2023-12-01 · Modified
5.4EPSS 0.004
CVE-2023-42022
IBM InfoSphere Information Server cross-site scripting
Published 2023-12-01 · Modified
5.4EPSS 0.004
CVE-2023-43015
IBM InfoSphere Information Server cross-site scripting
Published 2023-12-01 · Modified
5.4EPSS 0.004
CVE-2023-46174
IBM InfoSphere Information Server cross-site scripting
Published 2023-12-01 · Modified
5.4EPSS 0.004
CVE-2023-42029
IBM CICS TX cross-site scripting
Published 2023-11-02 · Modified
5.4EPSS 0.004
CVE-2022-40750
IBM WebSphere Application Server cross-site scripting
Published 2022-11-11 · Modified
5.4EPSS 0.004
CVE-2022-40753
IBM InfoSphere Information Server cross-site scripting
Published 2022-11-11 · Modified
5.4EPSS 0.004
CVE-2023-25928
IBM InfoSphere Information Server cross-site scripting
Published 2023-02-21 · Modified
5.4EPSS 0.004
CVE-2022-43578
IBM Sterling B2B Integrator Standard Edition cross-site scripting
Published 2023-02-22 · Modified
5.4EPSS 0.004
CVE-2022-43579
IBM Sterling B2B Integrator Standard Edition cross-site scripting
Published 2023-02-17 · Modified
5.4EPSS 0.004
CVE-2023-26283
IBM WebSphere Application Server cross-site scripting
Published 2023-03-22 · Modified
5.4EPSS 0.004
CVE-2026-1561
IBM WebSphere Application Server Liberty Server-Side Request Forgery
Published 2026-03-25 · Analyzed
5.4EPSS 0.003
CVE-2023-42007
IBM Sterling Control Center cross-site scripting
Published 2025-04-10 · Analyzed
5.4EPSS 0.002
CVE-2025-36298
Security Vulnerability in Ebics server affects IBM Sterling B2B Integrator and IBM Sterling File Gateway
Published 2026-07-30 · Analyzed
5.4EPSS 0.002
CVE-2025-36431
XSS Security Vulnerability in response header affects IBM Sterling B2B Integrator and IBM Sterling File Gateway
Published 2026-07-30 · Analyzed
5.4EPSS 0.002
CVE-2026-11383
Cross-site Scripting in IBM WebSphere Application Server shipped with Tivoli System Automation Application Manager
Published 2026-07-30 · Analyzed
5.4EPSS 0.002
CVE-2024-56341
IBM Content Navigator cross-site scripting
Published 2025-04-02 · Analyzed
5.4EPSS 0.002
CVE-2024-56475
IBM TXSeries for Multiplatforms cross-site scripting
Published 2025-04-02 · Analyzed
5.4EPSS 0.002
CVE-2025-14912
IBM InfoSphere Information Server is vulnerable to server-side request forgery
Published 2026-03-25 · Analyzed
5.4EPSS 0.002
CVE-2026-2483
IBM InfoSphere Information Server Cross-Site Scripting
Published 2026-03-25 · Analyzed
5.4EPSS 0.002
CVE-2026-1015
IBM InfoSphere Information Server is vulnerable to server-side request forgery
Published 2026-03-25 · Analyzed
5.4EPSS 0.002
CVE-2026-1243
IBM Content Navigator is affected by , a Cross-Site Scripting (XSS) vulnerability
Published 2026-04-02 · Analyzed
5.4EPSS 0.002
CVE-2024-54183
IBM Sterling B2B Integrator and IBM Sterling File Gateway cross-site scripting
Published 2025-06-18 · Analyzed
5.4EPSS 0.002
CVE-2025-2793
IBM Sterling B2B Integrator and IBM Sterling File Gateway cross-site scripting
Published 2025-07-08 · Analyzed
5.4EPSS 0.002
CVE-2022-22494
IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.14 could allow a remote attacker to gain details of the database, such as type and version, by sending a specially-crafted HTTP request. This information could then be used in future attacks. IBM X-Force ID: 226940.
Published 2022-06-30 · Modified
5.3EPSS 0.016
CVE-2020-4771
IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.10.and 7.1.0.000 through 7.1.11 could allow a remote attacker to obtain sensitive information, caused by improper authentication of a websocket endpoint. By using known tools to subscribe to the websocket event stream, an attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 188993.
Published 2020-11-23 · Modified
5.3EPSS 0.016
CVE-2020-4365
IBM WebSphere Application Server 8.5 is vulnerable to server-side request forgery. By sending a specially crafted request, a remote authenticated attacker could exploit this vulnerability to obtain sensitive data. IBM X-Force ID: 178964.
Published 2020-05-14 · Modified
5.3EPSS 0.014
← Prev20 / 25Next →