Vulnerability index

Browse CVEs

114 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Path TraversalCWE-22 × clear
Spectrum Protect Plus MEDIUM 6.5
CVE-2020-4240

IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote attacker to traverse directories on the system. An attacker could send a special…

Fix: after 10.1.5
Fix from $1,600 2020-03-31
Sterling File Gateway MEDIUM 5.3
CVE-2019-4423

IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 could allow a remote attacker to traverse directories on the system. An attacker could send a speci…

Fix: after 6.0.1.0
Fix from $1,600 2019-09-30
Financial Transaction Manager For Multiplatform MEDIUM 6.5
CVE-2018-1847

IBM Financial Transaction Manager (FTM) for Multi-Platform (MP) v2.0.0.0 through 2.0.0.5, v2.1.0.0 through 2.1.0.4, v2.1.1.0 through 2.1.1.4, and v3.…

Fix: after 3.0.0.8
Fix from $1,600 2019-09-18
Websphere Application Server MEDIUM 5.3
CVE-2019-4268

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories on the system. An attacker could send a…

Fix: after 9.0.5.0
Fix from $1,600 2019-09-17
Api Connect HIGH 7.5
CVE-2019-4460

IBM API Connect 5.0.0.0 through 5.0.8.6 developer portal could allow a remote attacker to traverse directories on the system. An attacker could send …

Fix: after 5.0.8.6
Fix from $1,950 2019-08-20
Maximo Asset Management HIGH 7.5
CVE-2019-4430

IBM Maximo Asset Management 7.6 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL r…

Patch available
Fix from $1,950 2019-07-17
Rational Collaborative Lifecycle Management HIGH 7.5
CVE-2019-4252

IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 could allow a remote attacker to traverse directories on the system. An attacker …

Fix: after 6.0.6.1
Fix from $1,950 2019-06-27
Cognos Analytics CRITICAL 9.1
CVE-2019-4178

IBM Cognos Analytics 11 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request t…

Fix: after 11.0.13.0
Fix from $2,300 2019-04-15
Security Privileged Identity Manager HIGH 7.5
CVE-2018-1618

IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 could allow a remote attacker to traverse directories on the system. An attacker cou…

Mitigation only
Fix from $1,950 2019-04-02
Websphere Application Server MEDIUM 5.5
CVE-2018-1797

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 using Enterprise bundle Archives (EBA) could allow a local attacker to traverse directories o…

Fix: after 9.0.0.9
Fix from $1,600 2018-11-16
Case Manager HIGH 7.8
CVE-2018-1884

IBM Case Manager 5.2.0.0, 5.2.0.4, 5.2.1.0, 5.2.1.7, 5.3.0.0, and 5.3.3.0 is vulnerable to a "zip slip" vulnerability which could allow a remote atta…

Mitigation only
Fix from $1,950 2018-11-12
Security Key Lifecycle Manager MEDIUM 6.5
CVE-2018-1744

IBM Security Key Lifecycle Manager 2.5, 2.6, 2.7, and 3.0 could allow a remote attacker to traverse directories on the system. An attacker could send…

Fix: after 3.0.0.1
Fix from $1,600 2018-10-15
Websphere Application Server MEDIUM 6.5
CVE-2018-1770

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories on the system. An attacker could send a…

Fix: after 9.0.0.9
Fix from $1,600 2018-10-12
Qradar Incident Forensics MEDIUM 6.5
CVE-2018-1649

IBM QRadar Incident Forensics 7.2 and 7.3 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-cra…

Fix: after 7.3.1
Fix from $1,600 2018-10-05
Urbancode Deploy MEDIUM 5.3
CVE-2017-1749

IBM UrbanCode Deploy 6.1 through 6.9.6.0 could allow a remote attacker to traverse directories on the system. An unauthenticated attacker could alter…

Fix: after 6.9.6.0
Fix from $1,600 2018-08-13
Infosphere Data Replication Dashboard HIGH 7.5
CVE-2013-3001

Directory traversal vulnerability in IBM InfoSphere Data Replication Dashboard 9.7 and 10.1 allows remote attackers to read arbitrary files via unspe…

Mitigation only
Fix from $1,950 2018-07-09
Qradar Security Information And Event Manager MEDIUM 6.5
CVE-2017-1723

IBM Security QRadar SIEM 7.2 and 7.3 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted …

Fix: 7.2.8+
Fix from $1,600 2018-04-26
Tealeaf Customer Experience MEDIUM 6.5
CVE-2017-1279

IBM Tealeaf Customer Experience 8.7, 8.8, and 9.0.2 could allow a remote attacker to traverse directories on the system. An attacker could send a spe…

Patch available
Fix from $1,600 2018-01-26
Security Key Lifecycle Manager HIGH 7.5
CVE-2017-1671

IBM Tivoli Key Lifecycle Manager 2.5, 2.6, and 2.7 could allow a remote attacker to traverse directories on the system. An attacker could send a spec…

Patch available
Fix from $1,950 2018-01-09
Sterling File Gateway MEDIUM 5.3
CVE-2017-1548

IBM Sterling File Gateway 2.2 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL req…

Mitigation only
Fix from $1,600 2017-12-11
Websphere Portal HIGH 7.5
CVE-2017-1577

IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-c…

Patch available
Fix from $1,950 2017-09-28
Change And Configuration Management Database MEDIUM 6.5
CVE-2015-0107EPSS 6%

IBM Tivoli IT Asset Management for IT, Tivoli Service Request Manager, and Change and Configuration Management Database 7.1 through 7.1.1.8 and 7.2 a…

Mitigation only
Fix from $1,600 2017-04-24
Kenexa Lms MEDIUM 6.5
CVE-2016-8933

IBM Kenexa LMS on Cloud could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request c…

Patch available
Fix from $1,600 2017-02-01
Kenexa Lms MEDIUM 5.7
CVE-2016-5941

IBM Kenexa LMS on Cloud could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request c…

Patch available
Fix from $1,600 2017-02-01
Kenexa Lms On Cloud MEDIUM 6.5
CVE-2016-6126

IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to traverse directories on the system. An attacker could send a speciall…

Mitigation only
Fix from $1,600 2017-02-01
Kenexa Lms On Cloud MEDIUM 6.5
CVE-2016-8913

IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to traverse directories on the system. An attacker could send a speciall…

Mitigation only
Fix from $1,600 2017-02-01
Bigfix Remote Control MEDIUM 6.8
CVE-2016-2933

Directory traversal vulnerability in IBM BigFix Remote Control before 9.1.3 allows remote authenticated administrators to read arbitrary files via a …

Fix: after 9.1.2
Fix from $1,600 2016-11-30
Sterling Secure Proxy HIGH 7.5
CVE-2016-6023

Directory traversal vulnerability in the Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.…

Mitigation only
Fix from $1,950 2016-10-06
Aix MEDIUM 6.5
CVE-2016-6038

Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote…

Mitigation only
Fix from $1,600 2016-09-26
Security Privileged Identity Manager Virtual Appliance MEDIUM 6.5
CVE-2016-5970

Directory traversal vulnerability in IBM Security Privileged Identity Manager (ISPIM) Virtual Appliance 2.x before 2.0.2 FP8 allows remote authentica…

Fix: after 2.0.2
Fix from $1,600 2016-09-26