Vulnerability index

Browse CVEs

48 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Privilege ManagementCWE-269 × clear
MEDIUM 6.5 CVE-2022-34338 IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could disclose sensitive information due to improper privilege management for storage provi… Robotic Process Automation 21.0.3+ Fix from $1,6002022-08-01 HIGH 7.5 CVE-2022-22390 IBM Db2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, 11.1, and 11.5 may be vulnerable to an information disclosure caused by improper privilege manag… Db2 Mitigation only Fix from $1,9502022-06-24 CRITICAL 9.8 CVE-2003-5001 A vulnerability was found in ISS BlackICE PC Protection and classified as critical. Affected by this issue is the component Cross Site Scripting Dete… Iss Blackice Pc Protection Mitigation only Fix from $2,3002022-03-28 HIGH 7.5 CVE-2021-29802 IBM Security SOAR performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifie… Resilient Security Orchestration Automation And Response 1.6.1+ Fix from $1,9502021-08-23 HIGH 7.2 CVE-2021-29792 IBM Event Streams 10.0, 10.1, 10.2, and 10.3 could allow a user the CA private key to create their own certificates and deploy them in the cluster an… Event Streams Mitigation only Fix from $1,9502021-07-12 HIGH 7.3 CVE-2020-4184 IBM Security Guardium 11.2 performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or… Security Guardium No fix yet Fix from $1,9502021-03-15 HIGH 7.2 CVE-2020-4603 IBM Security Guardium Insights 2.0.1 performs an operation at a privilege level that is higher than the minimum level required, which creates new wea… Security Guardium Insights Patch available Fix from $1,9502020-08-27 CRITICAL 9.8 CVE-2013-3323 A Privilege Escalation Vulnerability exists in IBM Maximo Asset Management 7.5, 7.1, and 6.2, when WebSeal with Basic Authentication is used, due to … Change And Configuration Management Database Mitigation only Fix from $2,3002020-02-18 HIGH 8.8 CVE-2019-4546 After installing the IBM Maximo Health- Safety and Environment Manager 7.6.1, a user is granted additional privileges that they are not normally allo… Maximo For Oil And Gas Mitigation only Fix from $1,9502019-10-29 MEDIUM 6.5 CVE-2019-4477 IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a user with access to audit logs to obtain sensitive information, caused by impro… Websphere Application Server after 9.0.5.0 Fix from $1,6002019-09-17 MEDIUM 6.3 CVE-2019-4536 IBM i 7.4 users who have done a Restore User Profile (RSTUSRPRF) on a system which has been configured with Db2 Mirror for i might have user profiles… I Patch available Fix from $1,6002019-08-29 HIGH 7.8 CVE-2019-4448 IBM DB2 High Performance Unload load for LUW 6.1, 6.1.0.1, 6.1.0.1 IF1, 6.1.0.2, 6.1.0.2 IF1, and 6.1.0.1 IF2 db2hpum and db2hpum_debug binaries are … Db2 High Performance Unload Load Patch available Fix from $1,9502019-08-26 HIGH 7.2 CVE-2018-1973 IBM API Connect 5.0.0.0 through 5.0.8.4 allows a user with limited 'API Administrator level access to give themselves full 'Administrator' level acce… Api Connect after 5.0.8.4 Fix from $1,9502018-12-20 HIGH 7.8 CVE-2018-1941 IBM Campaign 9.1.0 and 9.1.2 could allow a local user to obtain admini privileges due to the application not validating access permissions. IBM X-For… Campaign 9.1.0.13 / 9.1.2.7+ Fix from $1,9502018-12-05 MEDIUM 5.5 CVE-2018-1550 IBM Spectrum Protect 7.1 and 8.1 could allow a local user to corrupt or delete highly sensitive information that would cause a denial of service to o… Tivoli Storage Manager after 8.1.4.1 Fix from $1,6002018-09-26 HIGH 7.8 CVE-2018-1460 IBM Netezza Platform Software (IBM PureData System for Analytics 1.0.0) could allow a local user to modify a world writable file, which could be used… Puredata System For Analytics No fix yet Fix from $1,9502018-06-15 MEDIUM 6.5 CVE-2018-1495 IBM FlashSystem V840 and V900 products could allow an authenticated attacker with specialized access to overwrite arbitrary files which could cause a… Flashsystem 900 Firmware No fix yet Fix from $1,6002018-05-29 MEDIUM 5.4 CVE-2017-1493 IBM UrbanCode Deploy (UCD) 6.1 and 6.2 could allow an authenticated user to edit objects that they should not have access to due to improper access c… Urbancode Deploy Mitigation only Fix from $1,6002018-01-09