Vulnerability index

Browse CVEs

2,232 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Informix Dynamic Server HIGH 7.2
CVE-2008-0368

onedcu in IBM Informix Dynamic Server (IDS) 10.x before 10.00.xC8 allows local users to create arbitrary files via the Trace file argument.

Mitigation only
Fix from $1,950 2008-01-19
Informix Dynamic Server MEDIUM 6.9
CVE-2008-0369

Multiple unspecified programs in IBM Informix Dynamic Server (IDS) 10.x before 10.00.xC8 allow local users to create arbitrary files by specifying th…

Mitigation only
Fix from $1,600 2008-01-19
Lotus Domino HIGH 7.8
CVE-2008-0243

Unspecified vulnerability in Lotus Domino 7.0.2 before Fix Pack 3 allows attackers to cause a denial of service via unknown vectors.

No fix yet
Fix from $1,950 2008-01-12
Lotus Notes HIGH 8.8
CVE-2007-6593EPSS 6%

Multiple stack-based buffer overflows in l123sr.dll in Autonomy (formerly Verity) KeyView SDK, as used by IBM Lotus Notes 5.x through 8.x, allow user…

Mitigation only
Fix from $1,950 2007-12-28
Db2 Content Manager Toolkit HIGH 10.0
CVE-2007-6525

Unspecified vulnerability in eClient in IBM DB2 Content Manager (CM) Toolkit 8.3 before fix pack 7 for z/OS has unknown impact and attack vectors, re…

Mitigation only
Fix from $1,950 2007-12-27
Domino Web Access HIGH 9.3
CVE-2007-4474EPSS 44%

Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, inotes6w.dll, dwa7.dll, and dwa…

No fix yet
Fix from $1,950 2007-12-27
Tivoli Provisioning Manager Express MEDIUM 5.0
CVE-2007-6408

IBM Tivoli Provisioning Manager Express provides unspecified information in error messages when (1) attempted duplication of a username occurs when c…

Mitigation only
Fix from $1,600 2007-12-17
Hardware Management Console HIGH 10.0
CVE-2007-6293

Multiple unspecified vulnerabilities in IBM Hardware Management Console (HMC) 6 R1.3 allow attackers to gain privileges via "some HMC commands."

No fix yet
Fix from $1,950 2007-12-10
Websphere Mq HIGH 10.0
CVE-2007-6044

Multiple unspecified vulnerabilities in IBM WebSphere MQ 6.0 have unknown impact and remote attack vectors involving "memory corruption." NOTE: as of…

No fix yet
Fix from $1,950 2007-11-20
Thinkvantage Tpm HIGH 10.0
CVE-2007-5559EPSS 5%

Heap-based buffer overflow in the IBM ThinkVantage TPM Service allows remote attackers to execute arbitrary code via a crafted HTTP packet. NOTE: as …

No fix yet
Fix from $1,950 2007-10-18
Rational Clearquest HIGH 7.5
CVE-2007-5090

Unspecified vulnerability in IBM Rational ClearQuest (CQ), when a Microsoft SQL Server or an IBM DB2 database is used, allows attackers to corrupt da…

No fix yet
Fix from $1,950 2007-09-26
Rational Clearquest HIGH 7.5
CVE-2007-4368

SQL injection vulnerability in /main in IBM Rational ClearQuest (CQ) Web 7.0.0.0-IFIX02 and 7.0.0.1 allows remote attackers to execute arbitrary SQL …

No fix yet
Fix from $1,950 2007-08-15
Aix MEDIUM 6.9
CVE-2007-4238

AIX 5.2 and 5.3 install pioinit with user and group ownership of bin, which allows local users with bin or possibly printq privileges to gain root pr…

Mitigation only
Fix from $1,600 2007-08-08
Aix MEDIUM 6.9
CVE-2007-3333

Stack-based buffer overflow in capture in IBM AIX 5.3 SP6 and 5.2.0 allows remote attackers to execute arbitrary code via a large number of terminal …

Mitigation only
Fix from $1,600 2007-07-26
Aix MEDIUM 6.9
CVE-2007-4003

pioout in IBM AIX 5.3 SP6 allows local users to execute arbitrary code by specifying a malicious library with the -R (ParseRoutine) command line argu…

Mitigation only
Fix from $1,600 2007-07-26
Aix MEDIUM 6.9
CVE-2007-4004

Buffer overflow in the ftp client in IBM AIX 5.3 SP6 and 5.2.0 allows local users to execute arbitrary code via unspecified vectors that trigger the …

Mitigation only
Fix from $1,600 2007-07-26
Proventia Network Ips Gx5008 HIGH 9.3
CVE-2007-3831

PHP remote file inclusion in main.php in ISS Proventia Network IPS GX5108 1.3 and GX5008 1.5 allows remote attackers to execute arbitrary PHP code vi…

Mitigation only
Fix from $1,950 2007-07-17
Os 400 HIGH 7.8
CVE-2007-3537

IBM OS/400 (aka i5/OS) V4R2M0 through V5R3M0 on iSeries machines sends responses to TCP SYN-FIN packets, which allows remote attackers to obtain syst…

Mitigation only
Fix from $1,950 2007-07-03
Websphere Portal MEDIUM 6.4
CVE-2007-3128

SQL injection vulnerability in content.php in WSPortal 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL comma…

Mitigation only
Fix from $1,600 2007-06-19
Websphere Portal MEDIUM 5.0
CVE-2007-3127

content.php in WSPortal 1.0, when magic_quotes_gpc is disabled, allows remote attackers to obtain sensitive information via a "';" (quote semicolon) …

Mitigation only
Fix from $1,600 2007-06-19
Totalstorage Ds400 HIGH 10.0
CVE-2007-3232

The IBM TotalStorage DS400 with firmware 4.15 uses a blank password for the (1) root, (2) user, (3) manager, (4) administrator, and (5) operator acco…

Mitigation only
Fix from $1,950 2007-06-15
Lotus Domino HIGH 9.3
CVE-2007-0068

IBM Lotus Domino 7.0.x before 7.0.3 does not revalidate the signature on a signed scheduled agent after the agent is modified, which allows remote au…

Mitigation only
Fix from $1,950 2007-06-06
Aix HIGH 7.2
CVE-2007-1798

Buffer overflow in the drmgr command in IBM AIX 5.2 and 5.3 allows local users to cause a denial of service (crash) and possibly execute arbitrary co…

Mitigation only
Fix from $1,950 2007-04-02
Lotus Domino HIGH 7.8
CVE-2007-1739

Heap-based buffer overflow in the LDAP server in IBM Lotus Domino before 6.5.6 and 7.x before 7.0.2 FP1 allows remote attackers to cause a denial of …

No fix yet
Fix from $1,950 2007-03-28
Aix HIGH 7.2
CVE-2007-0978

Buffer overflow in swcons in IBM AIX 5.3 allows local users to gain privileges via long input data.

Mitigation only
Fix from $1,950 2007-02-16
Lotus Domino HIGH 7.1
CVE-2007-0977EPSS 19%

IBM Lotus Domino R5 and R6 WebMail, with "Generate HTML for all fields" enabled, stores HTTPPassword hashes from names.nsf in a manner accessible thr…

No fix yet
Fix from $1,950 2007-02-16
Os 400 MEDIUM 5.0
CVE-2007-0442

Unspecified vulnerability in IBM OS/400 R530 and R535 has unknown impact and remote attack vectors, related to an "Integrity Problem" involving LIC-T…

Mitigation only
Fix from $1,600 2007-01-23
Os 400 HIGH 10.0
CVE-2006-6836

Multiple unspecified vulnerabilities in osp-cert in IBM OS/400 V5R3M0 have unspecified impact and attack vectors, related to ASN.1 parsing.

No fix yet
Fix from $1,950 2006-12-31
Websphere Host On Demand HIGH 7.5
CVE-2006-6537

IBM WebSphere Host On-Demand 6.0, 7.0, 8.0, 9.0, and possibly 10, allows remote attackers to bypass authentication via a modified pnl parameter, rela…

Mitigation only
Fix from $1,950 2006-12-14
Client Security Password Manager MEDIUM 6.4
CVE-2006-5161

IBM Client Security Password Manager stores and distributes saved passwords based upon the title of a website, which allows remote attackers to obtai…

Mitigation only
Fix from $1,600 2006-10-05