Vulnerability index

Browse CVEs

56 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Open RedirectCWE-601 × clear
Planning Analytics Local HIGH 7.5
CVE-2026-10545

IBM Planning Analytics Local 2.1.0 through 2.1.21 is vulnerable to an open redirect that allows an attacker to redirect users to arbitrary external w…

Fix: after 2.1.21
Fix from $1,950 2026-07-30
Security Verify Access MEDIUM 6.1
CVE-2026-7364

IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 and IBM Verify Identity Access Container 11.0 thr…

Fix: after 11.0.2.0
Fix from $1,600 2026-07-17
Db2 Recovery Expert MEDIUM 6.1
CVE-2025-27900

IBM DB2 Recovery Expert for LUW 5.5 Interim Fix 002 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By pers…

Patch available
Fix from $1,600 2026-02-17
Cognos Command Center CRITICAL 9.3
CVE-2025-2697

IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuadi…

Mitigation only
Fix from $2,300 2025-08-26
Operational Decision Manager HIGH 7.4
CVE-2025-2824

IBM Operational Decision Manager 8.11.0.1, 8.11.1.0, 8.12.0.1, 9.0.0.1, and 9.5.0 could allow a remote attacker to conduct phishing attacks, using an…

Mitigation only
Fix from $1,950 2025-08-01
Process Mining HIGH 8.2
CVE-2025-36016

IBM Process Mining 2.0.1 IF001 and 2.0.1 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a vi…

Mitigation only
Fix from $1,950 2025-06-21
Cognos Analytics MEDIUM 5.2
CVE-2024-45082

IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3 could allow a remote attacker to conduct phishing attacks, using an open redir…

Fix: after 12.0.3
Fix from $1,600 2024-12-18
Security Verify Access HIGH 8.2
CVE-2024-35133

IBM Security Verify Access 10.0.0 through 10.0.8 OIDC Provider could allow a remote authenticated attacker to conduct phishing attacks, using an open…

Fix: after 10.0.8
Fix from $1,950 2024-08-29
Storage Defender Data Protect MEDIUM 5.4
CVE-2023-50963

IBM Storage Defender - Data Protect 1.0.0 through 1.4.1 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST he…

Fix: after 1.4.1
Fix from $1,600 2024-01-19
Security Verify Access MEDIUM 5.4
CVE-2023-30433

IBM Security Verify Access 10.0 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to v…

Mitigation only
Fix from $1,600 2023-07-19
Security Identity Manager MEDIUM 6.1
CVE-2021-29864

IBM Security Identity Manager 6.0 and 6.0.2 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a…

Mitigation only
Fix from $1,600 2022-08-30
Security Secret Server MEDIUM 6.1
CVE-2020-4840

IBM Security Secret Server 10.6 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to v…

Patch available
Fix from $1,600 2020-12-21
Tivoli Netcool\/impact MEDIUM 6.1
CVE-2020-4849

IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.19 Interim Fix 7 could allow a remote attacker to bypass security restrictions, caused by a reverse t…

Fix: after 7.1.0.19
Fix from $1,600 2020-12-15
Control Desk HIGH 8.2
CVE-2020-4409

IBM Maximo Asset Management 7.6.0 and 7.6.1 could allow a remote attacker to conduct phishing attacks, using a tabnabbing attack. By persuading a vic…

Fix: 7.6.1.2+
Fix from $1,950 2020-09-16
Security Guardium Insights MEDIUM 6.1
CVE-2020-4598

IBM Security Guardium Insights 2.0.1 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim…

Mitigation only
Fix from $1,600 2020-08-24
Planning Analytics MEDIUM 6.1
CVE-2020-4653

IBM Planning Analytics 2.0 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit …

Patch available
Fix from $1,600 2020-08-19
Sterling B2b Integrator MEDIUM 6.1
CVE-2019-4595

IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 could allow a remote attacker to conduct phishing attacks, using an open redirec…

Fix: after 5.2.6.5
Fix from $1,600 2020-02-24
Security Secret Server MEDIUM 6.1
CVE-2019-4631

IBM Security Secret Server 10.7 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to v…

Fix: 10.7.000059+
Fix from $1,600 2020-01-28
Security Directory Server HIGH 8.2
CVE-2019-4538

IBM Security Directory Server 6.4.0 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim …

Patch available
Fix from $1,950 2019-10-02
Security Access Manager MEDIUM 6.8
CVE-2019-4153

IBM Security Access Manager 9.0.1 through 9.0.6 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuadi…

Fix: after 9.0.6
Fix from $1,600 2019-06-25
Jazz For Service Management MEDIUM 6.1
CVE-2019-4201

IBM Jazz for Service Management 1.1.3, 1.1.3.1, and 1.1.3.2 could allow a remote attacker to conduct phishing attacks, using an open redirect attack.…

Fix: after 1.1.3.2
Fix from $1,600 2019-06-06
Storediq MEDIUM 6.1
CVE-2019-4166

IBM StoredIQ 7.6 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a speciall…

Fix: after 7.6.0.18
Fix from $1,600 2019-04-30
Content Navigator MEDIUM 6.1
CVE-2019-4092

IBM Content Navigator 2.0.3 and 3.0CD could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victi…

Mitigation only
Fix from $1,600 2019-04-25
Content Navigator MEDIUM 5.4
CVE-2019-4035

IBM Content Navigator 3.0CD could allow attackers to direct web traffic to a malicious site. If attackers make a fake IBM Content Navigator site, the…

Mitigation only
Fix from $1,600 2019-03-22
Infosphere Information Governance Catalog MEDIUM 6.1
CVE-2018-1875

IBM InfoSphere Information Governance Catalog 11.3, 11.5, and 11.7 could allow a remote attacker to conduct phishing attacks, using an open redirect …

Mitigation only
Fix from $1,600 2019-03-05
Cloud Private MEDIUM 6.1
CVE-2018-1939

IBM Cloud Private 3.1.1 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a s…

Mitigation only
Fix from $1,600 2019-03-05
Curam Social Program Management MEDIUM 6.1
CVE-2018-1654

IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, 7.0.1, and 7.0.3 could allow a remote attacker to conduct phishing attacks, using an open re…

Fix: after 7.0.3.0
Fix from $1,600 2018-12-11
Platform Symphony MEDIUM 5.4
CVE-2018-1704

IBM Platform Symphony 7.1 Fix Pack 1 and 7.1.1 and IBM Spectrum Symphony 7.1.2 and 7.2.0.2 could allow a remote attacker to conduct phishing attacks,…

Mitigation only
Fix from $1,600 2018-09-28
Websphere Portal MEDIUM 6.1
CVE-2018-1736

IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a…

Patch available
Fix from $1,600 2018-09-27
Inotes MEDIUM 6.1
CVE-2013-0594

Open redirect vulnerability in IBM iNotes before 8.5.3 Fix Pack 6 and 9.x before 9.0.1 allows remote attackers to redirect users to arbitrary web sit…

Patch available
Fix from $1,600 2018-07-11