Vulnerability index

Browse CVEs

228 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Db2 HIGH 7.5
CVE-2023-45178

IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5 CLI is vulnerable to a denial of service when a specially crafted request is u…

Patch available
Fix from $1,950 2023-12-03
Infosphere Information Server HIGH 7.5
CVE-2023-40699

IBM InfoSphere Information Server 11.7 could allow a remote attacker to cause a denial of service due to improper input validation. IBM X-Force ID: …

Fix: 11.7.1.0 / 11.7.1.4+
Fix from $1,950 2023-12-01
Vios MEDIUM 5.5
CVE-2023-45167

IBM AIX's 7.3 Python implementation could allow a non-privileged local user to exploit a vulnerability to cause a denial of service. IBM X-Force ID:…

No fix yet
Fix from $1,600 2023-11-10
Security Verify Privilege On Premises HIGH 7.1
CVE-2021-29913

IBM Security Verify Privilege On-Premise 11.5 could allow an authenticated user to obtain sensitive information or perform unauthorized actions due t…

Fix: 11.5+
Fix from $1,950 2023-10-17
Db2 HIGH 7.5
CVE-2023-40372

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to denial of service with a specially crafted SQL statement usin…

Fix: after 11.5.8
Fix from $1,950 2023-10-17
Db2 HIGH 7.5
CVE-2023-40373

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) is vulnerable to denial of service with a specially crafted query containing common…

Fix: after 11.5.8
Fix from $1,950 2023-10-17
Db2 HIGH 7.5
CVE-2023-30991

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to denial of service with a specially crafted query. I…

Fix: after 11.5.8
Fix from $1,950 2023-10-16
Db2 HIGH 7.5
CVE-2023-40374

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to denial of service with a specially crafted query statement. …

Fix: after 11.5.8
Fix from $1,950 2023-10-16
Db2 HIGH 7.5
CVE-2023-38740

IBM Db2 for Linux, UNIX, and Windows (includes Db2 Connect Server) 11.5 is vulnerable to a denial of service with a specially crafted SQL statement. …

Fix: after 11.5.8
Fix from $1,950 2023-10-16
Db2 HIGH 7.5
CVE-2023-38728

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted XM…

Fix: 11.5.8+
Fix from $1,950 2023-10-16
Db2 HIGH 7.5
CVE-2023-30987

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Fix: 11.5.8+
Fix from $1,950 2023-10-16
Db2 HIGH 7.5
CVE-2023-38720

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 and 11.5 is vulnerable to denial of service with a specially crafted ALTER TAB…

Fix: 11.5.8+
Fix from $1,950 2023-10-16
App Connect Enterprise MEDIUM 5.5
CVE-2023-45176

IBM App Connect Enterprise 11.0.0.1 through 11.0.0.23, 12.0.1.0 through 12.0.10.0 and IBM Integration Bus 10.1 through 10.1.0.1 are vulnerable to a d…

Fix: after 12.0.10.0
Fix from $1,600 2023-10-14
Security Guardium MEDIUM 6.5
CVE-2022-43903

IBM Security Guardium 10.6, 11.3, and 11.4 could allow an authenticated user to cause a denial of service due to due to improper input validation. I…

Patch available
Fix from $1,600 2023-09-05
Websphere Application Server HIGH 7.5
CVE-2023-38737

IBM WebSphere Application Server Liberty 22.0.0.13 through 23.0.0.7 is vulnerable to a denial of service, caused by sending a specially-crafted reque…

Fix: after 23.0.0.7
Fix from $1,950 2023-08-16
Mq HIGH 7.5
CVE-2023-28513

IBM MQ 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.2 CD, and 9.3 CD and IBM MQ Appliance 9.2 LTS, 9.3 LTS, 9.2 CD, and 9.2 LTS, under certain configuration…

Patch available
Fix from $1,950 2023-07-19
Security Guardium MEDIUM 6.5
CVE-2022-43908

IBM Security Guardium 11.3 could allow an authenticated user to cause a denial of service due to improper input validation. IBM X-Force ID: 240903.

Patch available
Fix from $1,600 2023-07-19
Db2 HIGH 7.5
CVE-2023-30446

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Patch available
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30447

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Patch available
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30448

IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Patch available
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30449

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Patch available
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30442

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 federated server is vulnerable to a denial of service as the server m…

Patch available
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30445

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Patch available
Fix from $1,950 2023-07-10
Watson Knowledge Catalog On Cloud Pak For Data MEDIUM 6.5
CVE-2023-28955

IBM Watson Knowledge Catalog on Cloud Pak for Data 4.0 could allow an authenticated user send a specially crafted request that could cause a denial o…

Fix: 4.7+
Fix from $1,600 2023-07-10
Powervm Hypervisor HIGH 7.9
CVE-2023-30440

IBM PowerVM Hypervisor FW860.00 through FW860.B3, FW950.00 through FW950.70, FW1010.00 through FW1010.50, FW1020.00 through FW1020.30, and FW1030.00 …

Mitigation only
Fix from $1,950 2023-05-23
Security Verify Access HIGH 7.5
CVE-2023-25927

IBM Security Verify Access 10.0.0, 10.0.1, 10.0.2, 10.0.3, 10.0.4, and 10.0.5 could allow an attacker to crash the webseald process using specially c…

Mitigation only
Fix from $1,950 2023-05-12
Elastic Storage System MEDIUM 5.5
CVE-2023-30434

IBM Storage Scale (IBM Spectrum Scale 5.1.0.0 through 5.1.2.9, 5.1.3.0 through 5.1.6.1 and IBM Elastic Storage Systems 6.1.0.0 through 6.1.2.5, 6.1.3…

Fix: 6.1.2.6 / 6.1.6.1+
Fix from $1,600 2023-05-05
Mq Appliance MEDIUM 6.5
CVE-2022-43919

IBM MQ 9.2 CD, 9.2 LTS, 9.3 CD, and 9.3 LTS could allow an authenticated attacker with authorization to craft messages to cause a denial of service. …

Fix: 9.2.0.10 / 9.2.5.7+
Fix from $1,600 2023-05-05
Db2 HIGH 7.5
CVE-2023-26021

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to a denial of service as the server may crash when com…

Fix: 11.1.4 / 11.5.8+
Fix from $1,950 2023-04-28
Db2 HIGH 7.5
CVE-2023-26022

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) is vulnerable to a denial of service as the server may crash when an Out of Memory …

Fix: 11.1.4 / 11.5.8+
Fix from $1,950 2023-04-28