VendorsIBMaixall versions
Vulnerabilities

IBM AIX

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

992CVEs
CVE-2026-17152
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.008
CVE-2026-16913
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.8EPSS 0.008
CVE-2026-17141
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.008
CVE-2026-16872
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.8EPSS 0.008
CVE-2026-16885
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.8EPSS 0.008
CVE-2026-17118
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.008
CVE-2026-16919
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.8EPSS 0.008
CVE-2026-17160
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.008
CVE-2026-16840
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.8EPSS 0.008
CVE-2026-17136
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.008
CVE-2026-16917
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.8EPSS 0.008
CVE-2024-39747
IBM Sterling Connect:Direct Web Services information disclosure
Published 2024-08-31 · Analyzed
9.8EPSS 0.008
CVE-2026-17145
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.007
CVE-2026-16656
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.8EPSS 0.007
CVE-2022-47984
IBM InfoSphere Information Server SQL injection
Published 2023-05-19 · Modified
9.8EPSS 0.007
CVE-2026-16834
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.8EPSS 0.006
CVE-2026-17436
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.006
CVE-2026-18832
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.006
CVE-2025-36251
AIX Command Execution
Published 2025-11-13 · Analyzed
9.8EPSS 0.005
CVE-2022-22317
IBM Curam Social Program Management 8.0.0 and 8.0.1 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 218281.
Published 2022-06-20 · Modified
9.8EPSS 0.005
CVE-2026-17138
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.005
CVE-2026-19437
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.005
CVE-2022-22318
IBM Curam Social Program Management 8.0.0 and 8.0.1 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system.
Published 2022-06-20 · Modified
9.8EPSS 0.004
CVE-2026-17000
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.004
CVE-2025-14917
IBM WebSphere Application Server Liberty could provide weaker than expected security
Published 2026-03-25 · Analyzed
9.8EPSS 0.004
CVE-2026-17006
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.004
CVE-2026-17024
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.8EPSS 0.003
CVE-2024-56347
IBM AIX command execution
Published 2025-03-18 · Analyzed
9.6EPSS 0.009
CVE-2026-16903
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.6EPSS 0.004
CVE-2026-14525
IBM WebSphere Application Server Liberty is affected by an authenication bypass
Published 2026-08-13 · Analyzed
9.4EPSS 0.006
CVE-2026-16839
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.4EPSS 0.005
CVE-2009-2727
Stack-based buffer overflow in the _tt_internal_realpath function in the ToolTalk library (libtt.a) in IBM AIX 5.2.0, 5.3.0, 5.3.7 through 5.3.10, and 6.1.0 through 6.1.3, when the rpc.ttdbserver daemon is enabled in /etc/inetd.conf, allows remote attackers to execute arbitrary code via a long XDR-encoded ASCII string to remote procedure 15.
Published 2009-08-10 · Modified
9.31 PoCEPSS 0.267
CVE-2026-11707
Multiple vulnerabilities have been identified in IBM WebSphere Application Server shipped with Tivoli System Automation Application Manager
Published 2026-07-30 · Analyzed
9.3EPSS 0.004
CVE-2026-16822
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.3EPSS 0.003
CVE-2026-17422
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.3EPSS 0.001
CVE-2018-1383
A software logic bug creates a vulnerability in an AIX 6.1, 7.1, and 7.2 daemon which could allow a user with root privileges on one system, to obtain root access on another machine. IBM X-force ID: 138117.
Published 2018-02-13 · Modified
9.1EPSS 0.027
CVE-2021-38948
IBM InfoSphere Information Server 11.7 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 211402.
Published 2021-11-02 · Modified
9.1EPSS 0.020
CVE-2022-40747
"IBM InfoSphere Information Server 11.7 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 236584."
Published 2022-11-03 · Modified
9.1EPSS 0.010
CVE-2023-47702
IBM Security Guardium Key Lifecycle Manager directory traversal
Published 2023-12-20 · Modified
9.1EPSS 0.010
CVE-2024-41783
IBM Sterling Secure Proxy improper input validation
Published 2025-01-19 · Analyzed
9.1EPSS 0.007
← Prev3 / 25Next →