Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.0
CVE-2010-4217
Use-after-free vulnerability in the proxy server in IBM Tivoli Directory Server (TDS) 6.0.0.x before 6.0.0.8-TIV-ITDS-IF0007 and 6.1.x before 6.1.0-T…
Tivoli Directory Server
Mitigation only
MEDIUM 6.5
CVE-2010-2635
SQL injection vulnerability in IBM WebSphere Commerce 6.0 before 6.0.0.10 allows remote authenticated users to execute arbitrary SQL commands via uns…
Websphere Commerce
Mitigation only
MEDIUM 6.0
CVE-2010-0785
Cross-site request forgery (CSRF) vulnerability in the Administrative Console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.35 and 7.0 b…
Websphere Application Server
Mitigation only
MEDIUM 5.0
CVE-2010-0786
The Web Services Security component in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.13 does not properly implement the Java API for XML We…
Websphere Application Server
Mitigation only
HIGH 7.5
CVE-2010-4121
The TCP-to-ODBC gateway in IBM Tivoli Provisioning Manager for OS Deployment 7.1.1.3 does not require authentication for SQL statements, which allows…
Tivoli Provisioning Manager Os Deployment
Mitigation only
MEDIUM 5.0
CVE-2010-4094EPSS 64%
The Tomcat server in IBM Rational Quality Manager and Rational Test Lab Manager has a default password for the ADMIN account, which makes it easier f…
Rational Quality Manager
Mitigation only
HIGH 10.0
CVE-2010-4070EPSS 5%
Integer overflow in librpc.dll in portmap.exe (aka the ISM Portmapper service) in ISM before 2.20.TC1.117 in IBM Informix Dynamic Server (IDS) 7.x be…
Informix Dynamic Server
Mitigation only
HIGH 8.5
CVE-2010-4069
Stack-based buffer overflow in IBM Informix Dynamic Server (IDS) 7.x through 7.31, 9.x through 9.40, 10.00 before 10.00.xC10, 11.10 before 11.10.xC3,…
Informix Dynamic Server
Mitigation only
HIGH 9.0
CVE-2010-4053
Stack-based buffer overflow in an unspecified logging function in oninit.exe in IBM Informix Dynamic Server (IDS) 11.10 before 11.10.xC2W2 and 11.50 …
Informix Dynamic Server
Mitigation only
HIGH 10.0
CVE-2010-3754
The FXCLI_OraBR_Exec_Command function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.…
Tivoli Storage Manager Fastback
Mitigation only
HIGH 10.0
CVE-2010-3757
Format string vulnerability in the _Eventlog function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 throug…
Tivoli Storage Manager Fastback
Mitigation only
HIGH 10.0
CVE-2010-3758EPSS 7%
Multiple stack-based buffer overflows in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.…
Tivoli Storage Manager Fastback
Mitigation only
HIGH 10.0
CVE-2010-3759
FastBackMount.exe in the Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 writes a cert…
Tivoli Storage Manager Fastback
Mitigation only
HIGH 10.0
CVE-2010-3761
Unspecified vulnerability in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to…
Tivoli Storage Manager Fastback
Mitigation only
HIGH 7.8
CVE-2010-3760
FastBackMount.exe in the Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 does not prop…
Tivoli Storage Manager Fastback
Mitigation only
MEDIUM 5.0
CVE-2010-3755
The _DAS_ReadBlockReply function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0…
Tivoli Storage Manager Fastback
Mitigation only
MEDIUM 5.0
CVE-2010-3756
The _CalcHashValueWithLength function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.…
Tivoli Storage Manager Fastback
Mitigation only
HIGH 7.2
CVE-2010-3733
The Engine Utilities component in IBM DB2 UDB 9.5 before FP6a uses world-writable permissions for the sqllib/cfg/db2sprf file, which might allow loca…
Db2
Mitigation only
MEDIUM 5.0
CVE-2010-3734
The Install component in IBM DB2 UDB 9.5 before FP6a on Linux, UNIX, and Windows enforces an unintended limit on password length, which makes it easi…
Db2
Mitigation only
MEDIUM 5.0
CVE-2010-3738
The Security component in IBM DB2 UDB 9.5 before FP6a logs AUDIT events by using a USERID and an AUTHID value corresponding to the instance owner, in…
Db2
Mitigation only
HIGH 10.0
CVE-2010-3731EPSS 10%
Stack-based buffer overflow in the validateUser implementation in the com.ibm.db2.das.core.DasSysCmd function in db2dasrrm in the DB2 Administration …
Db2
Mitigation only
MEDIUM 5.8
CVE-2010-3473
Open redirect vulnerability in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 allows remote atta…
Filenet P8 Application Engine
Mitigation only
MEDIUM 5.0
CVE-2010-3474
IBM DB2 9.7 before FP3 does not perform the expected drops or invalidations of dependent functions upon a loss of privileges by the functions' owners…
Db2
Mitigation only
MEDIUM 6.4
CVE-2009-5002
The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.1-P8AE-FP001 does not record Get Content Failure Au…
Filenet P8 Application Engine
Mitigation only
HIGH 9.3
CVE-2010-3407EPSS 41%
Stack-based buffer overflow in the MailCheck821Address function in nnotes.dll in the nrouter.exe service in the server in IBM Lotus Domino 8.0.x befo…
Lotus Domino
No fix yet
MEDIUM 6.8
CVE-2010-0153
Multiple cross-site request forgery (CSRF) vulnerabilities in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System …
Proventia Network Mail Security System Virtual Appliance
Mitigation only
MEDIUM 6.8
CVE-2010-3320
Open redirect vulnerability in IBM Records Manager (RM) 4.5.x before 4.5.1.1-IER-FP001 allows remote attackers to redirect users to arbitrary web sit…
Filenet Content Manager
Mitigation only
MEDIUM 5.0
CVE-2010-3318
IBM Records Manager (RM) 4.5.x before 4.5.1.1-IER-FP001 transmits passwords in cleartext, which allows remote attackers to obtain sensitive informati…
Filenet Content Manager
Mitigation only
MEDIUM 5.0
CVE-2010-3319
IBM Records Manager (RM) 4.5.x before 4.5.1.1-IER-FP001 places a session token in the URI, which might allow remote attackers to obtain sensitive inf…
Filenet Content Manager
Mitigation only
HIGH 10.0
CVE-2010-3193
Unspecified vulnerability in the DB2STST program in IBM DB2 9.1 before FP9, 9.5 before FP6, and 9.7 before FP2 has unknown impact and attack vectors.
Db2
No fix yet