VendorsIBMaixall versions
Vulnerabilities

IBM AIX

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

992CVEs
CVE-2026-15065
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
9.1EPSS 0.006
CVE-2026-8646
IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities
Published 2026-06-22 · Analyzed
9.1EPSS 0.006
CVE-2026-16926
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.1EPSS 0.006
CVE-2025-36236
AIX Path Traversal
Published 2025-11-13 · Analyzed
9.1EPSS 0.005
CVE-2024-38337
IBM Sterling Secure Proxy improper input validation
Published 2025-01-19 · Analyzed
9.1EPSS 0.005
CVE-2026-9006
IBM WebSphere Application Server is affected by server-side request forgery
Published 2026-06-22 · Analyzed
9.1EPSS 0.004
CVE-2026-18670
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.1EPSS 0.004
CVE-2026-17060
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.1EPSS 0.004
CVE-2026-8856
IBM HTTP Server is affected by multiple vulnerabilities
Published 2026-05-26 · Analyzed
9.1EPSS 0.003
CVE-2026-17423
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.1EPSS 0.003
CVE-2026-17003
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.1EPSS 0.003
CVE-2026-18716
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
9.1EPSS 0.003
CVE-2019-4728
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5_2, 6.0.0.0 through 6.0.3.2, and 6.1.0.0 could allow a remote attacker to execute arbitrary code on the system, caused by the deserialization of untrusted data. By sending specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code with SYSTEM privileges. IBM X-Force ID: 172452.
Published 2021-01-05 · Modified
9.0EPSS 0.050
CVE-2022-22394
The IBM Spectrum Protect 8.1.14.000 server could allow a remote attacker to bypass security restrictions, caused by improper enforcement of access controls. By signing in, an attacker could exploit this vulnerability to bypass security and gain unauthorized administrator or node access to the vulnerable server.
Published 2022-03-21 · Modified
9.0EPSS 0.022
CVE-2025-36096
AIX Insufficiently Protected Credentials
Published 2025-11-13 · Analyzed
9.0EPSS 0.003
CVE-2023-27867
IBM Db2 code execution
Published 2023-07-08 · Modified
8.8EPSS 0.016
CVE-2023-27869
IBM Db2 code execution
Published 2023-07-08 · Modified
8.8EPSS 0.016
CVE-2023-27868
IBM Db2 code execution
Published 2023-07-08 · Modified
8.8EPSS 0.016
CVE-2026-16850
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.015
CVE-2023-25925
IBM Security Guardium Key Lifecycle Manager command injection
Published 2024-02-28 · Analyzed
8.8EPSS 0.014
CVE-2020-4762
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5_2, 6.0.0.0 through 6.0.3.2, and 6.1.0.0 could allow an authenticated user to create a privileged account due to improper access controls. IBM X-Force ID: 188896.
Published 2021-01-05 · Modified
8.8EPSS 0.013
CVE-2021-29736
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote user to gain elevated privileges on the system. IBM X-Force ID: 201300.
Published 2021-07-30 · Modified
8.8EPSS 0.011
CVE-2023-25921
IBM Security Guardium Key Lifecycle Manager file upload
Published 2024-02-29 · Analyzed
8.8EPSS 0.011
CVE-2023-47706
IBM Security Guardium Key Lifecycle Manager file upload
Published 2023-12-20 · Modified
8.8EPSS 0.008
CVE-2021-29686
IBM Security Identity Manager 7.0.2 could allow an authenticated user to bypass security and perform actions that they should not have access to. IBM X-Force ID: 200015
Published 2021-05-20 · Modified
8.8EPSS 0.008
CVE-2026-16911
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.008
CVE-2026-16877
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.008
CVE-2021-29754
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a privilege escalation vulnerability when using the SAML Web Inbound Trust Association Interceptor (TAI). IBM X-Force ID: 202006.
Published 2021-06-11 · Modified
8.8EPSS 0.007
CVE-2026-16865
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.007
CVE-2022-40231
IBM Sterling B2B Integrator Standard Edition improper access control
Published 2023-02-17 · Modified
8.8EPSS 0.006
CVE-2023-25922
IBM Security Guardium Key Lifecycle Manager file upload
Published 2024-02-28 · Analyzed
8.8EPSS 0.006
CVE-2026-75624
IBM App Connect Enterprise is vulnerable to privilege escalation and Denial of Service
Published 2026-09-10 · Analyzed
8.8EPSS 0.005
CVE-2026-16844
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.005
CVE-2026-16842
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.005
CVE-2026-16848
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.005
CVE-2021-29888
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 207123.
Published 2021-11-02 · Modified
8.8EPSS 0.005
CVE-2022-40232
IBM Sterling B2B Integrator Standard Edition improper access control
Published 2023-02-17 · Modified
8.8EPSS 0.005
CVE-2026-17168
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
8.8EPSS 0.005
CVE-2026-16901
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.004
CVE-2026-16909
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.004
← Prev4 / 25Next →