Vulnerability index

Browse CVEs

138 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
CRITICAL 9.8 CVE-2019-4483 IBM Contract Management 10.1.0 through 10.1.3 and IBM Emptoris Spend Analysis 10.1.0 through 10.1.3 is vulnerable to SQL injection. A remote attacker… Emptoris Contract Management after 10.1.3 Fix from $2,3002019-08-20 CRITICAL 9.8 CVE-2019-4481 IBM Contract Management 10.1.0 through 10.1.3 and IBM Emptoris Spend Analysis 10.1.0 through 10.1.3 is vulnerable to SQL injection. A remote attacker… Emptoris Contract Management after 10.1.3 Fix from $2,3002019-08-20 HIGH 8.8 CVE-2019-4224 IBM PureApplication System 2.2.3.0 through 2.2.5.3 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, whi… Pureapplication System after 2.2.5.3 Fix from $1,9502019-06-26 CRITICAL 9.8 CVE-2019-4012 IBM BigFix WebUI Profile Management 6 and Software Distribution 23 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL… Bigfix Webui Profile Management Mitigation only Fix from $2,3002019-04-15 CRITICAL 9.8 CVE-2018-1994 IBM InfoSphere Information Server 11.5 and 11.7 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which … Infosphere Information Server On Cloud Patch available Fix from $2,3002019-04-10 CRITICAL 9.8 CVE-2019-4032 IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.1.0 is vulnerable to SQL injection. A remote attacker could send speciall… Financial Transaction Manager after 3.1.0.3 Fix from $2,3002019-03-05 HIGH 8.8 CVE-2018-1819 IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.0.2, 3.0.4, 3.0.6, and 3.2.0 is vulnerable to SQL injection. A remote att… Financial Transaction Manager Patch available Fix from $1,9502018-10-04 HIGH 8.8 CVE-2018-1674 IBM Business Process Manager 8.5 through 8.6 and 18.0.0.0 through 18.0.0.1 are vulnerable to SQL injection. A remote attacker could send specially-cr… Business Automation Workflow after 8.5.0.2 Fix from $1,9502018-09-20 HIGH 7.5 CVE-2018-1756EPSS 11% IBM Security Identity Governance and Intelligence 5.2.3.2 and 5.2.4 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQ… Security Identity Governance And Intelligence Patch available Fix from $1,9502018-09-07 HIGH 8.8 CVE-2018-1699 IBM Maximo Asset Management 7.6 through 7.6.3 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which co… Maximo Asset Management after 7.6.3 Fix from $1,9502018-08-24 CRITICAL 9.8 CVE-2013-3000 SQL injection vulnerability in IBM InfoSphere Data Replication Dashboard 9.7 and 10.1 allows remote attackers to execute arbitrary SQL commands via u… Infosphere Data Replication Dashboard Mitigation only Fix from $2,3002018-07-09 MEDIUM 6.3 CVE-2017-1722 IBM Security QRadar SIEM 7.2 and 7.3 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow… Qradar Security Information And Event Manager 7.2.8+ Fix from $1,6002018-04-26 HIGH 8.8 CVE-2018-1414 IBM Maximo Asset Management 7.5 and 7.6 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could al… Maximo Asset Management Patch available Fix from $1,9502018-02-22 CRITICAL 9.8 CVE-2017-1670 IBM Tivoli Key Lifecycle Manager 2.5, 2.6, and 2.7 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, whi… Security Key Lifecycle Manager Patch available Fix from $2,3002018-01-09 HIGH 8.8 CVE-2017-1757 IBM Security Guardium 10.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attac… Security Guardium Mitigation only Fix from $1,9502017-12-20 HIGH 8.8 CVE-2017-1606 IBM Financial Transaction Manager (FTM) for Multi-Platform (MP) 3.0.0.0 through 3.0.0.7 is vulnerable to SQL injection. A remote attacker could send … Financial Transaction Manager Mitigation only Fix from $1,9502017-12-11 HIGH 8.8 CVE-2017-1356 IBM Atlas eDiscovery Process Management 6.0.3 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which co… Atlas Ediscovery Process Management Mitigation only Fix from $1,9502017-12-07 HIGH 8.8 CVE-2017-1311 IBM Insights Foundation for Energy 2.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could all… Insights Foundation For Energy Mitigation only Fix from $1,9502017-10-03 HIGH 8.8 CVE-2017-1174 IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which… Sterling B2b Integrator Mitigation only Fix from $1,9502017-08-10 HIGH 7.5 CVE-2017-1183 IBM Tivoli Monitoring Portal v6 could allow a local (network adjacent) attacker to modify SQL commands to the Portal Server, when default client-serv… Tivoli Monitoring Patch available Fix from $1,9502017-07-17 CRITICAL 9.8 CVE-2017-1175 IBM Maximo Asset Management 7.1, 7.5, and 7.6 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which co… Maximo Asset Management Mitigation only Fix from $2,3002017-07-05 CRITICAL 9.8 CVE-2017-1269 IBM Security Guardium 10.0 and 10.1 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow … Security Guardium Mitigation only Fix from $2,3002017-07-05 HIGH 8.8 CVE-2017-1347 IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which… Sterling B2b Integrator Patch available Fix from $1,9502017-06-23 HIGH 7.5 CVE-2016-9728 IBM Qradar 7.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view,… Qradar Security Information And Event Manager Patch available Fix from $1,9502017-03-07 HIGH 7.1 CVE-2016-9992 IBM Kenexa LCMS Premier on Cloud 9.0, and 10.0.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which… Kenexa Lcms Premier Patch available Fix from $1,9502017-03-01 HIGH 7.1 CVE-2016-9993 IBM Kenexa LCMS Premier on Cloud 9.0, and 10.0.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which… Kenexa Lcms Premier Patch available Fix from $1,9502017-03-01 HIGH 7.1 CVE-2016-9994 IBM Kenexa LCMS Premier on Cloud 9.0, and 10.0.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which… Kenexa Lcms Premier Patch available Fix from $1,9502017-03-01 HIGH 7.6 CVE-2016-8928 IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker… Kenexa Lms Patch available Fix from $1,9502017-02-01 HIGH 7.6 CVE-2016-8930 IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker… Kenexa Lms Patch available Fix from $1,9502017-02-01 MEDIUM 5.4 CVE-2016-8929 IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker… Kenexa Lms Patch available Fix from $1,6002017-02-01