Vulnerability index

Browse CVEs

228 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Db2 MEDIUM 6.5
CVE-2026-1577

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow an authenticated user …

Fix: after 12.1.4
Fix from $1,600 2026-04-30
Soar Qradar Plugin App HIGH 7.5
CVE-2025-36114

IBM QRadar SOAR Plugin App 1.0.0 through 5.6.0 could allow a remote attacker to traverse directories on the system. An attacker could send a speciall…

Fix: after 5.6.0
Fix from $1,950 2025-08-20
Maximo Application Suite MEDIUM 6.5
CVE-2023-43037

IBM Maximo Application Suite 8.11 and 9.0 could allow an authenticated user to perform unauthorized actions due to improper input validation.

Fix: 8.11.13+
Fix from $1,600 2025-04-10
Security Verify Access Oidc Provider MEDIUM 5.5
CVE-2024-22338

IBM Security Verify Access OIDC Provider 22.09 through 23.03 could disclose sensitive information to a local user due to hazardous input validation. …

Fix: after 23.03
Fix from $1,600 2024-05-31
Db2 MEDIUM 6.5
CVE-2024-27254

IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5, 11.1, and 11.5 federated server is vulnerable to denial of service with a spe…

Mitigation only
Fix from $1,600 2024-04-03
Db2 MEDIUM 6.5
CVE-2024-22360

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to a denial of service with a specially crafted query on certain…

Mitigation only
Fix from $1,600 2024-04-03
Db2 MEDIUM 6.5
CVE-2024-25046

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to a denial of service by an authenticated user using a…

Mitigation only
Fix from $1,600 2024-04-03
Db2 MEDIUM 5.3
CVE-2023-52296

IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to denial of service when querying a specific UDF built-in funct…

Mitigation only
Fix from $1,600 2024-04-03
Mq MEDIUM 5.3
CVE-2023-45177

IBM MQ 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.3 LTS and 9.3 CD is vulnerable to a denial-of-service attack due to an error within the MQ clustering logic. IBM…

Fix: 9.0.0.21 / 9.1.0.18+
Fix from $1,600 2024-03-20
Mq HIGH 7.5
CVE-2024-25016

IBM MQ and IBM MQ Appliance 9.0, 9.1, 9.2, 9.3 LTS and 9.3 CD could allow a remote unauthenticated attacker to cause a denial of service due to incor…

Fix: 9.0.0.23 / 9.1.0.20+
Fix from $1,950 2024-03-03
Storage Ceph MEDIUM 6.5
CVE-2023-46159

IBM Storage Ceph 5.3z1, 5.3z5, and 6.1z1 could allow an authenticated user on the network to cause a denial of service from RGW. IBM X-Force ID: 26…

Patch available
Fix from $1,600 2024-02-02
Db2 MEDIUM 6.5
CVE-2023-47141

IIBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow an authenticated user with CONNECT privileges to cause a denial o…

Fix: 11.5.9+
Fix from $1,600 2024-01-22
Db2 MEDIUM 6.5
CVE-2023-47158

IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1 and 11.5 could allow an authenticated user with CONNECT privileges t…

Fix: after 11.5.9
Fix from $1,600 2024-01-22
Db2 MEDIUM 6.5
CVE-2023-47747

IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.1, 10.5, and 11.1 could allow an authenticated user with CONNECT privileges to c…

Fix: after 11.5.9
Fix from $1,600 2024-01-22
Db2 MEDIUM 6.5
CVE-2023-50308

IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5 under certain circumstances could allow an authenticated user to the database …

Fix: 11.5.9+
Fix from $1,600 2024-01-22
Db2 HIGH 7.5
CVE-2023-45193

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 federated server is vulnerable to a denial of service when a specially crafted…

Fix: 11.5.9+
Fix from $1,950 2024-01-22
Db2 MEDIUM 6.5
CVE-2023-47746

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 could allow an authenticated user with CONNECT privileges to c…

Fix: after 11.5.9
Fix from $1,600 2024-01-22
Vios MEDIUM 5.5
CVE-2023-45171

IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the kernel to cause a denial of service. IBM X-…

Mitigation only
Fix from $1,600 2024-01-11
Vios MEDIUM 5.5
CVE-2023-45169

IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the pmsvcs kernel extension to cause a denial of…

Mitigation only
Fix from $1,600 2024-01-11
Vios MEDIUM 5.5
CVE-2023-45175

IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the TCP/IP kernel extension to cause a denial of…

Mitigation only
Fix from $1,600 2024-01-11
Vios MEDIUM 5.5
CVE-2023-45173

IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the NFS kernel extension to cause a denial of se…

Mitigation only
Fix from $1,600 2024-01-11
Aix MEDIUM 5.5
CVE-2023-45165

IBM AIX 7.2 and 7.3 could allow a non-privileged local user to exploit a vulnerability in the AIX SMB client to cause a denial of service. IBM X-For…

Mitigation only
Fix from $1,600 2023-12-22
Urbancode Deploy MEDIUM 6.5
CVE-2023-47161

IBM UrbanCode Deploy (UCD) 7.1 through 7.1.2.14, 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 may mishandle input validation of an uploaded archive f…

Fix: after 7.3.2.2
Fix from $1,600 2023-12-20
Urbancode Deploy MEDIUM 5.5
CVE-2023-42012

An IBM UrbanCode Deploy Agent 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 installed as a Windows service in a non-standard location could be subject…

Fix: after 7.3.2.2
Fix from $1,600 2023-12-20
Vios MEDIUM 5.5
CVE-2023-45172

IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in AIX windows to cause a denial of service. IBM X…

Patch available
Fix from $1,600 2023-12-19
Db2 HIGH 7.5
CVE-2023-40687

IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted RU…

Fix: after 11.5.9
Fix from $1,950 2023-12-04
Db2 HIGH 7.5
CVE-2023-29258

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1, and 11.5 is vulnerable to a denial of service through a specially crafted fed…

Fix: after 11.5.9
Fix from $1,950 2023-12-04
Db2 HIGH 7.5
CVE-2023-38727

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted SQ…

Fix: after 11.5.9
Fix from $1,950 2023-12-04
Db2 HIGH 7.5
CVE-2023-46167

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 federated server is vulnerable to a denial of service when a specially crafted…

Fix: after 11.5.8
Fix from $1,950 2023-12-04
Db2 HIGH 7.5
CVE-2023-47701

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Fix: after 11.5.9
Fix from $1,950 2023-12-04