VendorsIBMaixall versions
Vulnerabilities

IBM AIX

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

992CVEs
CVE-2026-16814
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.004
CVE-2026-16841
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.004
CVE-2026-16847
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-19 · Analyzed
8.8EPSS 0.004
CVE-2026-18824
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
8.8EPSS 0.004
CVE-2020-4668
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5, 6.1.0.0 through 6.1.0.3, and 6.1.1.0 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 186283.
Published 2022-04-08 · Modified
8.8EPSS 0.004
CVE-2023-38268
IBM InfoSphere Information Server cross-site request forgery
Published 2023-12-01 · Modified
8.8EPSS 0.003
CVE-2022-30608
"IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a "user that the website trusts. IBM X-Force ID: 227295.
Published 2022-11-03 · Modified
8.8EPSS 0.003
CVE-2023-42027
IBM CICS TX cross-site request forgery
Published 2023-11-02 · Modified
8.8EPSS 0.003
CVE-2025-13855
IBM Storage Protect Server is affected by a vulnerability that could allow authenticated users to access administrative metadata through the JSON-RPC endpoint .
Published 2026-04-01 · Analyzed
8.8EPSS 0.003
CVE-2026-16932
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
8.8EPSS 0.002
CVE-2024-56474
IBM TXSeries for Multiplatforms cross-site request forgery
Published 2025-04-02 · Analyzed
8.8EPSS 0.002
CVE-2026-16996
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
8.8EPSS 0.002
CVE-2026-16936
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
8.8EPSS 0.002
CVE-2026-16934
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
8.8EPSS 0.002
CVE-2026-19449
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
8.8EPSS 0.001
CVE-2026-19442
Vulnerabilities in IBM AIX and PowerVM VIOS
Published 2026-08-20 · Analyzed
8.8EPSS 0.001
CVE-2021-29678
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a user with DBADM authority to access other databases and read or modify files. IBM X-Force ID: 199914.
Published 2021-12-09 · Modified
8.7EPSS 0.011
CVE-2022-22351
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged trusted host user to exploit a vulnerability in the nimsh daemon to cause a denial of service in the nimsh daemon on another trusted host. IBM X-Force ID: 220396
Published 2022-03-07 · Modified
8.6EPSS 0.012
CVE-2013-3005
The TFTP client in IBM AIX 6.1 and 7.1, and VIOS 2.2.2.2-FP-26 SP-02, when RBAC is enabled, allows remote authenticated users to bypass intended file-ownership restrictions, and read or overwrite arbitrary files, via unspecified vectors.
Published 2013-07-06 · Modified
8.5EPSS 0.030
CVE-2015-5005
CSPOC in IBM PowerHA SystemMirror on AIX 6.1 and 7.1 allows remote authenticated users to perform an "su root" action by leveraging presence on the cluster-wide password-change list.
Published 2015-11-08 · Modified
8.5EPSS 0.017
CVE-2023-28528
IBM AIX command execution
Published 2023-04-28 · Modified
8.4EPSS 0.015
CVE-1999-0038
Buffer overflow in xlock program allows local users to execute commands as root.
Published 1999-09-29 · Modified
8.42 PoCEPSS 0.013
CVE-2020-4204
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to a buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code on the system with root privileges. IBM X-Force ID: 174960.
Published 2020-02-19 · Modified
8.4EPSS 0.006
CVE-2019-4154
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an authenticated local attacker to execute arbitrary code on the system as root. IBM X-Force ID: 158519.
Published 2019-07-01 · Modified
8.4EPSS 0.005
CVE-2019-4322
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an authenticated local attacker to execute arbitrary code on the system as root. IBM X-Force ID: 161202.
Published 2019-07-01 · Modified
8.4EPSS 0.005
CVE-2020-4829
IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a local user to exploit a vulnerability in the ksu user command to gain root privileges. IBM X-Force ID: 189960.
Published 2020-12-10 · Modified
8.4EPSS 0.004
CVE-2023-30431
IBM Db2 buffer overflow
Published 2023-07-09 · Modified
8.4EPSS 0.003
CVE-2023-26286
IBM AIX privilege escalation
Published 2023-04-26 · Modified
8.4EPSS 0.003
CVE-2021-38990
IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the mount command which could lead to code execution. IBM X-Force ID: 212952.
Published 2022-01-07 · Modified
8.4EPSS 0.003
CVE-2023-45168
IBM AIX command execution
Published 2023-12-01 · Modified
8.4EPSS 0.003
CVE-2021-38991
IBM AIX 7.0, 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the lscore command which could lead to code execution. IBM X-Force ID: 212953.
Published 2022-01-11 · Modified
8.4EPSS 0.003
CVE-2024-25021
IBM AIX command execution
Published 2024-02-22 · Analyzed
8.4EPSS 0.003
CVE-2021-29741
IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a local user to exploit a vulnerability in Korn Shell (ksh) to gain root privileges. IBM X-Force ID: 201478.
Published 2021-08-02 · Modified
8.4EPSS 0.003
CVE-2021-29801
IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the kernel to gain root privileges. IBM X-Force ID: 203977.
Published 2021-08-26 · Modified
8.4EPSS 0.003
CVE-2023-45166
IBM AIX privilege escalation
Published 2023-12-13 · Modified
8.4EPSS 0.002
CVE-2023-45174
IBM AIX privilege escalation
Published 2023-12-13 · Modified
8.4EPSS 0.002
CVE-2023-45170
IBM AIX privilege escalation
Published 2023-12-13 · Modified
8.4EPSS 0.002
CVE-2024-27260
IBM AIX command execution
Published 2024-05-16 · Analyzed
8.4EPSS 0.002
CVE-2022-36768
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the invscout command to obtain root privileges. IBM X-Force ID: 232014.
Published 2022-09-13 · Modified
8.4EPSS 0.002
CVE-2022-34356
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to obtain root privileges. IBM X-Force ID: 230502.
Published 2022-09-13 · Modified
8.4EPSS 0.002
← Prev5 / 25Next →