Vulnerability index

Browse CVEs

138 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Sterling Partner Engagement Manager CRITICAL 9.8
CVE-2022-40615

IBM Sterling Partner Engagement Manager 6.1, 6.2, and 6.2.1 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statem…

Patch available
Fix from $2,300 2023-01-11
Sterling B2b Integrator CRITICAL 9.8
CVE-2022-22338

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 is vulnerable to SQL injection. A remote attacker could send specially crafted S…

Fix: 6.0.3.7 / 6.1.0.6+
Fix from $2,300 2023-01-04
Sterling B2b Integrator CRITICAL 9.8
CVE-2021-39085

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5, 6.1.0.0 through 6.1.0.4, and 6.1.1.0 through 6.1.1.1 is vulnerable to SQL injec…

Fix: 6.0.3.6 / 6.1.0.5+
Fix from $2,300 2022-08-16
Security Verify Access MEDIUM 6.5
CVE-2022-22463

IBM Security Access Manager Appliance 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 is vulnerable to SQL injection. A remote attacker could send special…

Patch available
Fix from $1,600 2022-07-08
Db2 MEDIUM 6.5
CVE-2022-22389

IBM Db2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to a denial of service as the server may terminate abnormally when …

Mitigation only
Fix from $1,600 2022-06-24
Financial Transaction Manager CRITICAL 9.8
CVE-2019-4575

IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.2.0 through 3.2.9 is vulnerable to SQL injection. A remote attacker could…

Fix: after 3.2.9
Fix from $2,300 2022-06-15
Sevone Network Performance Management HIGH 8.8
CVE-2020-36530

A vulnerability classified as critical was found in SevOne Network Management System up to 5.7.2.22. This vulnerability affects the Alert Summary. Th…

Fix: after 5.7.2.22
Fix from $1,950 2022-06-07
Infosphere Information Server CRITICAL 9.8
CVE-2022-31768

IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could all…

Patch available
Fix from $2,300 2022-06-06
I HIGH 8.8
CVE-2022-22495

IBM i 7.3, 7.4, and 7.5 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker…

Patch available
Fix from $1,950 2022-05-24
Robotic Process Automation CRITICAL 9.8
CVE-2022-22413

IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statemen…

Mitigation only
Fix from $2,300 2022-05-12
Sterling B2b Integrator CRITICAL 9.8
CVE-2021-29798

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.1.0 is vulnerable to SQL injection. A remote attacker could send specially crafted S…

Fix: after 6.1.0.3
Fix from $2,300 2021-10-06
Sterling B2b Integrator CRITICAL 9.8
CVE-2021-29903

IBM Sterling B2B Integrator Standard Edition 5.2.6.0 through 6.1.1.0 is vulnerable to SQL injection. A remote attacker could send specially crafted S…

Fix: after 6.1.0.3
Fix from $2,300 2021-10-06
Infosphere Information Server HIGH 8.8
CVE-2021-29730

IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could all…

Patch available
Fix from $1,950 2021-07-09
Datacap Navigator HIGH 8.8
CVE-2020-4902

IBM Datacap Taskmaster Capture (IBM Datacap Navigator 9.1.7) is vulnerable to SQL injection. A remote attacker could send specially crafted SQL state…

Patch available
Fix from $1,950 2021-07-01
Security Guardium HIGH 8.8
CVE-2020-4990

IBM Security Guardium 11.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attac…

Patch available
Fix from $1,950 2021-05-24
Security Guardium HIGH 8.8
CVE-2020-4921

IBM Security Guardium 10.6 and 11.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow …

Mitigation only
Fix from $1,950 2021-01-20
Sterling File Gateway HIGH 8.8
CVE-2020-4647

IBM Sterling File Gateway 2.2.0.0 through 2.2.6.5 and 6.0.0.0 through 6.0.3.2 is vulnerable to SQL injection. A remote attacker could send specially …

Fix: after 6.0.3.2
Fix from $1,950 2020-11-16
Sterling B2b Integrator HIGH 8.8
CVE-2020-4655

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.2 and 5.2.0.0 through 5.2.6.5 is vulnerable to SQL injection. A remote attacker co…

Fix: after 6.0.3.2
Fix from $1,950 2020-11-16
Sterling B2b Integrator HIGH 8.8
CVE-2019-4680

IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.2.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted S…

Fix: after 6.0.2.2
Fix from $1,950 2020-10-20
Maximo Asset Management MEDIUM 6.3
CVE-2019-4671

IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which coul…

Fix: 7.6.0.10 / 7.6.1.2+
Fix from $1,600 2020-09-15
Infosphere Guardium HIGH 8.8
CVE-2012-3336

IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to SQL injection. A remote authenticated attacker could send specially-crafted SQL statement…

Mitigation only
Fix from $1,950 2020-09-01
Financial Transaction Manager For Multiplatform MEDIUM 6.3
CVE-2020-4328

IBM Financial Transaction Manager 3.2.4 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could al…

Mitigation only
Fix from $1,600 2020-08-03
Maximo Asset Management MEDIUM 6.3
CVE-2019-4650

IBM Maximo Asset Management 7.6.1.1 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow …

Mitigation only
Fix from $1,600 2020-06-26
Business Process Manager MEDIUM 6.3
CVE-2019-4669

IBM Business Process Manager 8.5.7.0 through 8.5.7.0 2017.06, 8.6.0.0 through 8.6.0.0 CF2018.03, and IBM Business Automation Workflow 18.0.0.1 throug…

Fix: after 19.0.0.3
Fix from $1,600 2020-02-27
Sterling B2b Integrator MEDIUM 6.3
CVE-2019-4597

IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 is vulnerable to SQL injection. A remote attacker could send specially-crafted S…

Fix: after 5.2.6.5
Fix from $1,600 2020-02-26
Sterling B2b Integrator MEDIUM 6.3
CVE-2019-4598

IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 is vulnerable to SQL injection. A remote attacker could send specially-crafted S…

Fix: after 5.2.6.5
Fix from $1,600 2020-02-26
Emptoris Spend Analysis HIGH 8.8
CVE-2019-4752

IBM Emptoris Spend Analysis and IBM Emptoris Strategic Supply Management Platform 10.1.0.x, 10.1.1.x, and 10.1.3.x is vulnerable to SQL injection. A …

Fix: 10.1.0.34 / 10.1.1.33+
Fix from $1,950 2020-02-20
Jazz Reporting Service CRITICAL 9.8
CVE-2019-4651

IBM Jazz Reporting Service (JRS) 6.0.6.1 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could a…

Mitigation only
Fix from $2,300 2020-01-09
Sterling B2b Integrator HIGH 8.8
CVE-2019-4387

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.2.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted S…

Fix: after 6.0.2.0
Fix from $1,950 2019-11-26
Sterling File Gateway HIGH 7.2
CVE-2019-4147

IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, whic…

Fix: after 6.0.1.0
Fix from $1,950 2019-09-16