Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Authorization Bypass (IDOR)CWE-639 × clear
Sterling B2b Integrator MEDIUM 5.3
CVE-2026-3482

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5_2,  6.2.1.0 through 6.2.1.1_2, and  6.2.2.0 through 6.2.2.0_1 could…

Fix: after 6.2.2.0_1
Fix from $1,600 2026-07-22
Infosphere Information Server HIGH 7.5
CVE-2025-14974

IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable due to Insecure Direct Object Reference (IDOR).

Fix: after 11.7.1.6
Fix from $1,950 2026-03-25
Db2 HIGH 7.5
CVE-2025-36365

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 under specific configuration of cataloged remot…

Fix: after 12.1.3
Fix from $1,950 2026-01-30
Cloud Pak For Business Automation MEDIUM 6.5
CVE-2025-36023

IBM Cloud Pak for Business Automation 24.0.0 through 24.0.0 IF005 and 24.0.1 through 24.0.1 IF002 could allow an authenticated user to view sensitive…

Mitigation only
Fix from $1,600 2025-08-08
Infosphere Information Server MEDIUM 5.4
CVE-2024-31898

IBM InfoSphere Information Server 11.7 could allow an authenticated user to read or modify sensitive information by bypassing authentication using in…

Mitigation only
Fix from $1,600 2024-06-30
Partner Engagement Manager HIGH 7.1
CVE-2022-22331

IBM SterlingPartner Engagement Manager 6.2.0 could allow a remote authenticated attacker to obtain sensitive information or modify user details cause…

Patch available
Fix from $1,950 2022-04-01
Security Guardium MEDIUM 5.4
CVE-2021-29773

IBM Security Guardium 10.6 and 11.3 could allow a remote authenticated attacker to obtain sensitive information or modify user details caused by an i…

Patch available
Fix from $1,600 2021-09-15