Vulnerability index

Browse CVEs

13 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
I MEDIUM 5.3
CVE-2026-18150

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to a race condition.

Fix unknown
Fix from $4,000 2026-08-12
I MEDIUM 5.0
CVE-2026-18250

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information and bypass security restrictions due to a ra…

Fix: after 7.6
Fix from $4,000 2026-08-12
Websphere Application Server MEDIUM 5.9
CVE-2026-5516

IBM WebSphere Application Server - Liberty 22.0.0.11 through 26.0.0.5 IBM WebSphere Application Server Liberty could allow a remote attacker to bypas…

Fix: after 26.0.0.5
Fix from $1,600 2026-05-27
Storage Virtualize HIGH 7.0
CVE-2025-1351

IBM Storage Virtualize 8.5, 8.6, and 8.7 products could allow a user to escalate their privileges to that of another user logging in at the same time…

Mitigation only
Fix from $1,950 2025-07-07
Db2 MEDIUM 5.3
CVE-2025-1493

IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 12.1.0 through 12.1.1 could allow an authenticated user to cause a denial of …

Fix: after 12.1.1
Fix from $1,600 2025-05-05
Vios MEDIUM 5.5
CVE-2024-52906

IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1 could allow a non-privileged local user to exploit a vulnerability in the TCP/IP kernel extension to cause a d…

Mitigation only
Fix from $1,600 2024-12-25
Watson Assistant For Ibm Cloud Pak For Data MEDIUM 5.9
CVE-2024-49353

IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data 4.0.0 through 5.0.2 does not properly check inputs to resources that are used concurr…

Fix: 5.0.3+
Fix from $1,600 2024-11-26
Java Sdk MEDIUM 5.9
CVE-2024-27267

The Object Request Broker (ORB) in IBM SDK, Java Technology Edition 7.1.0.0 through 7.1.5.18 and 8.0.0.0 through 8.0.8.26 is vulnerable to remote den…

Fix: after 8.0.8.26
Fix from $1,600 2024-08-14
System Networking Switch Center HIGH 7.1
CVE-2015-7817

Race condition in the administration-panel web service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8…

Fix: after 8.1.1.0
Fix from $1,950 2015-11-12
Websphere Application Server HIGH 8.5
CVE-2015-1882

Multiple race conditions in IBM WebSphere Application Server (WAS) 8.5 Liberty Profile before 8.5.5.5 allow remote authenticated users to gain privil…

Patch available
Fix from $1,950 2015-04-27
Tivoli Storage Manager MEDIUM 6.9
CVE-2014-4813

Race condition in the client in IBM Tivoli Storage Manager (TSM) 5.4.0.0 through 5.4.3.6, 5.5.0.0 through 5.5.4.3, 6.1.0.0 through 6.1.5.6, 6.2 befor…

Patch available
Fix from $1,600 2015-02-13
Aix MEDIUM 6.9
CVE-2009-1786

The malloc subsystem in libc in IBM AIX 5.3 and 6.1 allows local users to create or overwrite arbitrary files via a symlink attack on the log file as…

Patch available
Fix from $1,600 2009-05-26
Aix MEDIUM 6.9
CVE-2004-2697

The Inventory Scout daemon (invscoutd) 1.3.0.0 and 2.0.2 for AIX 4.3.3 and 5.1 allows local users to gain privileges via a symlink attack on a comman…

No fix yet
Fix from $1,600 2004-12-31