Vulnerability index

Browse CVEs

66 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Db2 MEDIUM 6.5
CVE-2023-29267

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5is vulnerable to a denial of service, under specific configurat…

Mitigation only
Fix from $1,600 2024-06-12
Spss Statistics MEDIUM 5.5
CVE-2022-43855

IBM SPSS Statistics 26.0, 27.0.1, and 28.0 IO Module could allow a local user to create multiple files that could exhaust the file handles capacity a…

Mitigation only
Fix from $1,600 2024-03-08
Vios MEDIUM 6.2
CVE-2022-43380

IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX NFS kernel extension to cause a den…

Patch available
Fix from $1,600 2022-12-23
Vios MEDIUM 6.2
CVE-2022-43381

IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in the AIX SMB client to cause a denial of serv…

Patch available
Fix from $1,600 2022-12-23
Connections MEDIUM 6.5
CVE-2015-7461

XML external entity (XXE) vulnerability in IBM Connections 3.0.1.1 and earlier, 4.0, 4.5, and 5.0 before CR4 allows remote authenticated users to cau…

Fix: after 3.0.1.1
Fix from $1,600 2018-03-20
Qradar Security Information And Event Manager HIGH 7.5
CVE-2016-9740

IBM QRadar 7.2 could allow a remote attacker to consume all resources on the server due to not properly restricting the size or amount of resources r…

Patch available
Fix from $1,950 2017-03-07
Websphere Application Server HIGH 7.5
CVE-2016-8919

IBM WebSphere Application Server may be vulnerable to a denial of service, caused by allowing serialized objects from untrusted sources to run and ca…

Patch available
Fix from $1,950 2017-02-01
Websphere Mq HIGH 7.5
CVE-2016-0260

Memory leak in queue-manager agents in IBM WebSphere MQ 8.x before 8.0.0.5 allows remote attackers to cause a denial of service (heap memory consumpt…

Mitigation only
Fix from $1,950 2016-06-29
Websphere Mq Light MEDIUM 5.3
CVE-2015-4942

IBM WebSphere MQ Light 1.x before 1.0.2 allows remote attackers to cause a denial of service (MQXR service crash) via a series of connect and disconn…

Mitigation only
Fix from $1,600 2016-01-18
Mashups Center HIGH 7.7
CVE-2015-7400

The Lotus Mashups component in IBM Mashup Center 3.0.0.1 allows remote authenticated users to cause a denial of service (CPU consumption) via an XML …

Mitigation only
Fix from $1,950 2016-01-02
Websphere Portal HIGH 7.8
CVE-2015-7419

IBM WebSphere Portal 8.0.0.1 before CF19 and 8.5.0 before CF09 allows remote attackers to cause a denial of service (memory consumption) via crafted …

Mitigation only
Fix from $1,950 2015-11-14
Websphere Portal HIGH 7.8
CVE-2015-1943

IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.x through 7.0.0.2 CF29, 8.0.x before 8.0.0.1 CF17, and 8.5.0 bef…

Patch available
Fix from $1,950 2015-09-14
Websphere Mq MEDIUM 5.0
CVE-2015-2013

IBM WebSphere MQ 7.0.1 before 7.0.1.13 allows remote attackers to cause a denial of service (channel-agent abend and process outage) via a crafted se…

Patch available
Fix from $1,600 2015-09-14
Websphere Mq Light HIGH 7.8
CVE-2015-1987

IBM MQ Light before 1.0.0.2 allows remote attackers to cause a denial of service (disk consumption) via a crafted byte sequence in authentication dat…

Mitigation only
Fix from $1,950 2015-08-03
Websphere Mq Light HIGH 7.8
CVE-2015-1958

IBM MQ Light before 1.0.0.2 allows remote attackers to cause a denial of service (disk consumption) via a crafted byte sequence in authentication dat…

Mitigation only
Fix from $1,950 2015-08-03
Websphere Mq Light HIGH 7.8
CVE-2015-1956

IBM MQ Light before 1.0.0.2 allows remote attackers to cause a denial of service (disk consumption) via a crafted byte sequence in authentication dat…

Mitigation only
Fix from $1,950 2015-08-03
Websphere Mq Light HIGH 7.8
CVE-2015-1955

IBM MQ Light before 1.0.0.2 allows remote attackers to cause a denial of service (CPU consumption) via a crafted byte sequence in authentication data.

Mitigation only
Fix from $1,950 2015-08-03
Endpoint Manager Family MEDIUM 5.0
CVE-2014-8927

Common Inventory Technology (CIT) before 2.7.0.2050 in IBM License Metric Tool 7.2.2, 7.5, and 9; Endpoint Manger for Software Use Analysis 9; and Ti…

Patch available
Fix from $1,600 2015-05-25
Endpoint Manager Family MEDIUM 5.0
CVE-2014-8926

Common Inventory Technology (CIT) before 2.7.0.2050 in IBM License Metric Tool 7.2.2, 7.5, and 9; Endpoint Manger for Software Use Analysis 9; and Ti…

Patch available
Fix from $1,600 2015-05-25
Websphere Portal HIGH 7.8
CVE-2015-1899

IBM WebSphere Portal 8.5 through CF05 allows remote attackers to cause a denial of service (CPU consumption) via unspecified vectors.

Patch available
Fix from $1,950 2015-05-25
Websphere Portal HIGH 7.8
CVE-2015-1886

The Remote Document Conversion Service (DCS) in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF…

Patch available
Fix from $1,950 2015-04-27
Rational Requirements Composer HIGH 7.8
CVE-2015-0132

The XML parser in IBM Rational DOORS Next Generation 4.x before 4.0.7 iFix3 and 5.x before 5.0.2 and Rational Requirements Composer 2.x and 3.x befor…

Patch available
Fix from $1,950 2015-03-18
Sas Raid Module Firmware HIGH 7.8
CVE-2014-3018

IBM BladeCenter SAS Connectivity Module (aka NSSM) and SAS RAID Module (aka RSSM) before 1.3.3.006 allow remote attackers to cause a denial of servic…

Fix: after 1.3.3.004
Fix from $1,950 2015-01-17
Sterling B2b Integrator MEDIUM 5.0
CVE-2014-6199

The HTTP Server Adapter in IBM Sterling B2B Integrator 5.1 and 5.2.x and Sterling File Gateway 2.1 and 2.2 allows remote attackers to cause a denial …

Mitigation only
Fix from $1,600 2015-01-10
Rational Clearcase MEDIUM 5.0
CVE-2014-3104

IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 allows remote attackers to cause a denial of service (me…

Patch available
Fix from $1,600 2014-09-23
Websphere Portal MEDIUM 5.0
CVE-2014-0949

IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0 through 7.0.0.2 CF28, and 8.0 before 8.0.0.1 CF12 allows remote atta…

Patch available
Fix from $1,600 2014-05-22
Websphere Application Server HIGH 7.1
CVE-2014-0964

IBM WebSphere Application Server (WAS) 6.1.0.0 through 6.1.0.47 and 6.0.2.0 through 6.0.2.43 allows remote attackers to cause a denial of service via…

Mitigation only
Fix from $1,950 2014-05-16
Security Access Manager For Web Software HIGH 7.1
CVE-2014-0963

The Reverse Proxy feature in IBM Global Security Kit (aka GSKit) in IBM Security Access Manager (ISAM) for Web 7.0 before 7.0.0-ISS-SAM-IF0006 and 8.…

Patch available
Fix from $1,950 2014-05-08
Sterling B2b Integrator MEDIUM 5.0
CVE-2013-0494

IBM Sterling B2B Integrator 5.0 and 5.1 allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted HTTP (1) Rang…

Mitigation only
Fix from $1,600 2013-08-09
Lotus Domino MEDIUM 5.8
CVE-2012-4842

Open redirect vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attackers to redirect users to arbitrary web site…

Mitigation only
Fix from $1,600 2013-02-27