Vulnerability index

Browse CVEs

16 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect Default PermissionsCWE-276 × clear
MEDIUM 5.5 CVE-2024-35139 IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to obtain sensitive information from the container due to incor… Security Access Manager after 10.0.7.1 Fix from $1,6002024-06-28 MEDIUM 6.5 CVE-2023-38370 IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1, under certain configurations, could allow a user on the network to install malicious pa… Security Access Manager after 10.0.7.1 Fix from $1,6002024-06-27 HIGH 7.8 CVE-2024-27264 IBM Performance Tools for i 7.2, 7.3, 7.4, and 7.5 could allow a local user to gain elevated privileges due to an unqualified library call. A malici… I Mitigation only Fix from $1,9502024-05-22 MEDIUM 6.5 CVE-2023-40363 IBM InfoSphere Information Server 11.7 could allow an authenticated user to change installation files due to incorrect file permission settings. IBM… Infosphere Information Server Mitigation only Fix from $1,6002023-11-18 MEDIUM 6.5 CVE-2022-46774 IBM Manage Application 8.8.0 and 8.9.0 in the IBM Maximo Application Suite is vulnerable to incorrect default permissions which could give access to … Manage Application Mitigation only Fix from $1,6002023-03-15 HIGH 8.8 CVE-2022-40232 IBM Sterling B2B Integrator Standard Edition 6.1.0.0 through 6.1.1.1, and 6.1.2.0 could allow an authenticated user to perform actions they should no… Sterling B2b Integrator after 6.1.1.1 Fix from $1,9502023-02-17 HIGH 7.5 CVE-2022-43574 "IBM Robotic Process Automation 21.0.1, 21.0.2, 21.0.3, 21.0.4, and 21.0.5 is vulnerable to incorrect permission assignment which could allow access … Robotic Process Automation 21.0.6+ Fix from $1,9502022-11-03 MEDIUM 6.5 CVE-2021-39087 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5, 6.1.0.0 through 6.1.0.4, and 6.1.1.0 through 6.1.1.1 could allow an authenticat… Sterling B2b Integrator 6.0.3.6 / 6.1.0.5+ Fix from $1,6002022-08-16 MEDIUM 5.5 CVE-2022-22424 IBM QRadar SIEM 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information from the TLS key file due to incorrect file permissions. I… Qradar Security Information And Event Manager 7.3.3 / 7.4.3+ Fix from $1,6002022-07-20 MEDIUM 5.5 CVE-2021-20490 IBM Spectrum Protect Plus 10.1.0 through 10.1.8 could allow a local user to cause a denial of service due to insecure file permission settings. IBM X… Spectrum Protect Plus after 10.1.8 Fix from $1,6002021-06-29 HIGH 7.8 CVE-2021-20532 IBM Spectrum Protect Client 8.1.0.0 through 8.1.11.0 could allow a local user to escalate their privileges to take full control of the system due to … Spectrum Protect Backup Archive Client after 8.1.11.0 Fix from $1,9502021-04-26 MEDIUM 6.5 CVE-2020-4259 IBM Sterling File Gateway 2.2.0.0 through 6.0.3.1 could allow an authenticated user could manipulate cookie information and remove or add modules fro… Sterling File Gateway after 6.0.3.1 Fix from $1,6002020-05-14 HIGH 7.8 CVE-2020-4270 IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow a local user to gain escalated privileges due to weak file permissions. IBM X-ForceID: 175846. Qradar Security Information And Event Manager 7.3.3+ Fix from $1,9502020-04-15 MEDIUM 5.4 CVE-2020-4274 IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow an authenticated user to access data and perform unauthorized actions due to inadequate permission chec… Qradar Security Information And Event Manager 7.3.3+ Fix from $1,6002020-04-15 HIGH 7.1 CVE-2019-4652 IBM Spectrum Protect Plus 10.1.0 through 10.1.4 uses insecure file permissions on restored files and directories in Windows which could allow a local… Spectrum Protect Plus after 10.1.4 Fix from $1,9502019-11-12 HIGH 7.1 CVE-2017-1382 IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 might create files using the default permissions instead of the customized permissions when c… Websphere Application Server after 9.0.0.4 Fix from $1,9502017-07-24