Vulnerability index

Browse CVEs

221 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Concert HIGH 7.8
CVE-2025-12771

IBM Concert 1.0.0 through 2.1.0 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A local user could overflow the b…

Fix: 2.2.0+
Fix from $1,950 2025-12-26
Infosphere Data Replication Vsam For Z\/os Remote Source HIGH 7.8
CVE-2025-36156

IBM InfoSphere Data Replication VSAM for z/OS Remote Source 11.4 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. …

Mitigation only
Fix from $1,950 2025-10-07
Engineering Systems Design Rhapsody HIGH 8.8
CVE-2025-33076

IBM Engineering Systems Design Rhapsody 9.0.2, 10.0, and 10.0.1 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A…

Mitigation only
Fix from $1,950 2025-07-23
Engineering Systems Design Rhapsody HIGH 8.8
CVE-2025-33077

IBM Engineering Systems Design Rhapsody 9.0.2, 10.0, and 10.0.1 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A…

Mitigation only
Fix from $1,950 2025-07-23
Security Directory Integrator CRITICAL 9.8
CVE-2022-33162

IBM Security Directory Integrator 7.2.0 and Security Verify Directory Integrator 10.0.0 does not perform any authentication for functionality that re…

Mitigation only
Fix from $2,300 2024-08-16
Personal Communications CRITICAL 10.0
CVE-2024-25029

IBM Personal Communications 14.0.6 through 15.0.1 includes a Windows service that is vulnerable to remote code execution (RCE) and local privilege es…

Fix: after 15.0.1
Fix from $2,300 2024-04-06
Sterling Connect\ HIGH 7.5
CVE-2023-32331

IBM Connect:Express for UNIX 1.5.0 is vulnerable to a buffer overflow that could allow a remote attacker to cause a denial of service through its bro…

Mitigation only
Fix from $1,950 2024-03-04
Vios HIGH 7.8
CVE-2023-45168

IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the invscout command to execute arbitrary comman…

Mitigation only
Fix from $1,950 2023-12-01
Db2 HIGH 7.8
CVE-2023-30431

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 db2set is vulnerable to a buffer overflow, caused by improper …

Patch available
Fix from $1,950 2023-07-10
Aspera Cargo HIGH 7.8
CVE-2023-27285

IBM Aspera Connect 4.2.5 and IBM Aspera Cargo 4.2.5 is vulnerable to a buffer overflow, caused by improper bounds checking. An attacker could overflo…

Fix: 4.2.6+
Fix from $1,950 2023-06-05
Mq Appliance MEDIUM 5.9
CVE-2023-26285

IBM MQ 9.2 CD, 9.2 LTS, 9.3 CD, and 9.3 LTS could allow a remote attacker to cause a denial of service due to an error processing invalid data. IBM …

Fix: 9.2.0.11 / 9.2.5.7+
Fix from $1,600 2023-05-05
Aspera Cargo CRITICAL 9.8
CVE-2023-27284

IBM Aspera Cargo 4.2.5 and IBM Aspera Connect 4.2.5 are vulnerable to a buffer overflow, caused by improper bounds checking. An attacker could overfl…

Fix: 4.2.5+
Fix from $2,300 2023-04-02
Aspera Cargo CRITICAL 9.8
CVE-2023-27286

IBM Aspera Cargo 4.2.5 and IBM Aspera Connect 4.2.5 are vulnerable to a buffer overflow, caused by improper bounds checking. An attacker could overfl…

Fix: 4.2.5+
Fix from $2,300 2023-04-02
Content Navigator HIGH 8.8
CVE-2022-43581

IBM Content Navigator 3.0.0, 3.0.1, 3.0.2, 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.0.7, 3.0.8, 3.0.9, 3.0.10, 3.0.11, and 3.0.12 is vulnerable to missing autho…

Fix: after 3.0.12
Fix from $1,950 2022-12-07
Spectrum Protect HIGH 7.8
CVE-2019-4267

The IBM Spectrum Protect 7.1 and 8.1 Backup-Archive Client is vulnerable to a buffer overflow. This could allow execution of arbitrary code on the lo…

Fix: 7.1.8.6 / 8.1.8.0+
Fix from $1,950 2019-07-22
Db2 HIGH 7.8
CVE-2019-4154

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an …

Patch available
Fix from $1,950 2019-07-01
Db2 HIGH 7.8
CVE-2019-4322

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an …

Patch available
Fix from $1,950 2019-07-01
Power System S922 \(9009 22a\) Firmware MEDIUM 6.4
CVE-2018-1992

The IBM Power 9 OP910, OP920, and FW910 boot firmware's bootloader is responsible for loading and validating the initial boot firmware image that dri…

Mitigation only
Fix from $1,600 2019-03-21
Db2 HIGH 7.8
CVE-2018-1922

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is affected by buffer overflow vulnerability that can pot…

Patch available
Fix from $1,950 2019-03-11
Db2 HIGH 7.8
CVE-2018-1923

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is affected by buffer overflow vulnerability that can pot…

Patch available
Fix from $1,950 2019-03-11
Db2 HIGH 7.8
CVE-2018-1978

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an …

Patch available
Fix from $1,950 2019-03-11
Db2 HIGH 7.8
CVE-2018-1980

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an …

Patch available
Fix from $1,950 2019-03-11
Domino HIGH 7.8
CVE-2018-1771

IBM Domino 9.0 and 9.0.1 could allow an attacker to execute commands on the system by triggering a buffer overflow in the parsing of command line arg…

Fix: after 9.0.1.10
Fix from $1,950 2018-12-20
Db2 HIGH 7.8
CVE-2018-1710

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.1, 10.5, and 11.1 tool db2licm is affected by buffer overflow vulnerability that…

Mitigation only
Fix from $1,950 2018-09-21
Db2 HIGH 7.8
CVE-2018-1488

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5 and 11.1 is vulnerable to a buffer overflow, which could allow an authenticate…

Mitigation only
Fix from $1,950 2018-05-25
Db2 HIGH 7.8
CVE-2018-1544

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local user to overflow a buffer which may r…

Mitigation only
Fix from $1,950 2018-05-25
Db2 HIGH 7.8
CVE-2018-1565

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local user to overflow a buffer which may r…

Mitigation only
Fix from $1,950 2018-05-25
Db2 HIGH 7.0
CVE-2018-1515

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5 and 11.1, under specific or unusual conditions, could allow a local user to ov…

Mitigation only
Fix from $1,950 2018-05-25
Db2 MEDIUM 5.5
CVE-2018-1427

IBM GSKit (IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1) contains several environment variables that a local attacker could overflow…

Mitigation only
Fix from $1,600 2018-03-22
I Access For Windows HIGH 7.8
CVE-2015-0114

Stack-based buffer overflow in IBM V5R4, and IBM i Access for Windows 6.1 and 7.1.

Patch available
Fix from $1,950 2017-08-28