Vulnerability index

Browse CVEs

114 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Path TraversalCWE-22 × clear
Webmethods Integration MEDIUM 6.5
CVE-2024-45074

IBM webMethods Integration 10.15 could allow an authenticated user to traverse directories on the system. An attacker could send a specially crafted …

Mitigation only
Fix from $1,600 2024-09-04
Datacap MEDIUM 5.3
CVE-2024-39741

IBM Datacap Navigator 9.1.5, 9.1.6, 9.1.7, 9.1.8, and 9.1.9 could allow a remote attacker to traverse directories on the system. An attacker could se…

Mitigation only
Fix from $1,600 2024-07-15
Maximo Application Suite HIGH 7.5
CVE-2024-22328

IBM Maximo Application Suite 8.10 and 8.11 could allow a remote attacker to traverse directories on the system. An attacker could send a specially cr…

Mitigation only
Fix from $1,950 2024-04-06
Filenet Content Manager MEDIUM 5.3
CVE-2023-38366

IBM Filenet Content Manager Component 5.5.8.0, 5.5.10.0, and 5.5.11.0 could allow a remote attacker to traverse directories on the system. An attacke…

Mitigation only
Fix from $1,600 2024-03-01
Soar Qradar Plugin App MEDIUM 6.5
CVE-2023-38019

IBM SOAR QRadar Plugin App 1.0 through 5.0.3 could allow a remote attacker to traverse directories on the system. An attacker could send a specially …

Fix: 5.0.3+
Fix from $1,600 2024-02-02
Sterling Control Center MEDIUM 5.3
CVE-2023-35020

IBM Sterling Control Center 6.3.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL…

Patch available
Fix from $1,600 2024-01-19
Security Guardium Key Lifecycle Manager CRITICAL 9.1
CVE-2023-47702

IBM Security Guardium Key Lifecycle Manager 4.3 could allow a remote attacker to traverse directories on the system. An attacker could send a special…

Fix: 4.2.0.2+
Fix from $2,300 2023-12-20
Mq Appliance HIGH 7.5
CVE-2023-46177

IBM MQ Appliance 9.3 LTS and 9.3 CD could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted …

Patch available
Fix from $1,950 2023-12-18
Security Directory Integrator HIGH 7.5
CVE-2022-33165

IBM Security Directory Server 6.4.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted U…

Patch available
Fix from $1,950 2023-10-14
License Metric Tool HIGH 7.5
CVE-2023-43044

IBM License Metric Tool 9.2 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL reque…

Fix: 9.2.33+
Fix from $1,950 2023-09-28
Security Directory Server CRITICAL 9.1
CVE-2022-33164

IBM Security Directory Server 7.2.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted U…

Patch available
Fix from $2,300 2023-09-08
Security Verify Governance MEDIUM 6.5
CVE-2023-35016

IBM Security Verify Governance, Identity Manager 10.0 could allow a remote attacker to traverse directories on the system. An attacker could send a s…

Mitigation only
Fix from $1,600 2023-07-31
Security Key Lifecycle Manager MEDIUM 5.3
CVE-2023-25688

IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1could allow a remote attacker to traverse directories on the system. An at…

Patch available
Fix from $1,600 2023-03-22
Security Key Lifecycle Manager MEDIUM 5.3
CVE-2023-25689

IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1 , and 4.1.1 could allow a remote attacker to traverse directories on the system. An …

Patch available
Fix from $1,600 2023-03-21
Financial Transaction Manager HIGH 7.5
CVE-2020-5001

IBM Financial Transaction Manager 3.2.0 through 3.2.7 could allow a remote attacker to traverse directories on the system. An attacker could send a s…

Fix: after 3.2.7
Fix from $1,950 2023-03-01
Infosphere Information Server HIGH 7.5
CVE-2023-24960

IBM InfoSphere Information Server 11.7 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafte…

Patch available
Fix from $1,950 2023-02-17
Business Automation Workflow HIGH 7.5
CVE-2022-43864

IBM Business Automation Workflow 22.0.2 could allow a remote attacker to traverse directories on the system. An attacker could send a specially craft…

Fix: after 21.0.3.1
Fix from $1,950 2023-01-26
Spectrum Scale MEDIUM 6.8
CVE-2022-40607

IBM Spectrum Scale 5.1 could allow users with permissions to create pod, persistent volume and persistent volume claim to access files and directorie…

Fix: after 5.1.4.0
Fix from $1,600 2022-12-19
Spectrum Protect Plus HIGH 7.5
CVE-2022-40608

IBM Spectrum Protect Plus 10.1.6 through 10.1.11 Microsoft File Systems restore operation can download any file on the target machine by manipulating…

Fix: after 10.1.11
Fix from $1,950 2022-09-19
Websphere Application Server Nd HIGH 8.8
CVE-2021-20517

IBM WebSphere Application Server Network Deployment 8.5 and 9.0 could allow a remote authenticated attacker to traverse directories. An attacker coul…

Fix: 8.5.5.20 / 9.0.5.8+
Fix from $1,950 2021-06-07
8335 Gca Firmware MEDIUM 6.5
CVE-2021-29695

IBM Host firmware for LC-class Systems could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafte…

Mitigation only
Fix from $1,600 2021-05-25
Websphere Application Server MEDIUM 6.5
CVE-2020-5016

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories on the system. When application securit…

Fix: after 9.0.5.6
Fix from $1,600 2021-03-10
Websphere Application Server HIGH 7.5
CVE-2021-20354

IBM WebSphere Application Server 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories. An attacker could send a specially-crafted …

Fix: after 9.0.5.6
Fix from $1,950 2021-02-18
Qradar Security Information And Event Manager MEDIUM 6.5
CVE-2020-4789

IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 could allow a remote attacker to traverse directories o…

Patch available
Fix from $1,600 2021-01-27
Websphere Application Server MEDIUM 6.5
CVE-2020-4782

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories on the system. An attacker could send a…

Fix: after 9.0.5.5
Fix from $1,600 2020-10-28
Curam Social Program Management HIGH 7.5
CVE-2020-4776

A path traversal vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10, which could allow a remote attacker to traverse direc…

Mitigation only
Fix from $1,950 2020-10-12
Spectrum Protect Plus MEDIUM 6.5
CVE-2020-4711

IBM Spectrum Protect Plus 10.1.0 through 10.1.6 could allow a remote attacker to traverse directories on the system. An attacker could send a special…

Fix: after 10.1.6
Fix from $1,600 2020-09-15
Infosphere Guardium MEDIUM 5.3
CVE-2012-3337

IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-cr…

Mitigation only
Fix from $1,600 2020-09-01
Spectrum Protect Plus MEDIUM 5.4
CVE-2020-4209

IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote attacker to traverse directories on the system. An attacker could send a special…

Fix: after 10.1.5
Fix from $1,600 2020-05-04
Qradar Security Information And Event Manager HIGH 8.8
CVE-2020-4272

IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow a remote attacker to include arbitrary files. A remote attacker could send a specially-crafted request …

Fix: 7.3.3+
Fix from $1,950 2020-04-15