Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.2
CVE-2008-0368
onedcu in IBM Informix Dynamic Server (IDS) 10.x before 10.00.xC8 allows local users to create arbitrary files via the Trace file argument.
Informix Dynamic Server
Mitigation only
MEDIUM 6.9
CVE-2008-0369
Multiple unspecified programs in IBM Informix Dynamic Server (IDS) 10.x before 10.00.xC8 allow local users to create arbitrary files by specifying th…
Informix Dynamic Server
Mitigation only
HIGH 7.8
CVE-2008-0243
Unspecified vulnerability in Lotus Domino 7.0.2 before Fix Pack 3 allows attackers to cause a denial of service via unknown vectors.
Lotus Domino
No fix yet
HIGH 8.8
CVE-2007-6593EPSS 6%
Multiple stack-based buffer overflows in l123sr.dll in Autonomy (formerly Verity) KeyView SDK, as used by IBM Lotus Notes 5.x through 8.x, allow user…
Lotus Notes
Mitigation only
HIGH 10.0
CVE-2007-6525
Unspecified vulnerability in eClient in IBM DB2 Content Manager (CM) Toolkit 8.3 before fix pack 7 for z/OS has unknown impact and attack vectors, re…
Db2 Content Manager Toolkit
Mitigation only
HIGH 9.3
CVE-2007-4474EPSS 44%
Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, inotes6w.dll, dwa7.dll, and dwa…
Domino Web Access
No fix yet
MEDIUM 5.0
CVE-2007-6408
IBM Tivoli Provisioning Manager Express provides unspecified information in error messages when (1) attempted duplication of a username occurs when c…
Tivoli Provisioning Manager Express
Mitigation only
HIGH 10.0
CVE-2007-6293
Multiple unspecified vulnerabilities in IBM Hardware Management Console (HMC) 6 R1.3 allow attackers to gain privileges via "some HMC commands."
Hardware Management Console
No fix yet
HIGH 10.0
CVE-2007-6044
Multiple unspecified vulnerabilities in IBM WebSphere MQ 6.0 have unknown impact and remote attack vectors involving "memory corruption." NOTE: as of…
Websphere Mq
No fix yet
HIGH 10.0
CVE-2007-5559EPSS 5%
Heap-based buffer overflow in the IBM ThinkVantage TPM Service allows remote attackers to execute arbitrary code via a crafted HTTP packet. NOTE: as …
Thinkvantage Tpm
No fix yet
HIGH 7.5
CVE-2007-5090
Unspecified vulnerability in IBM Rational ClearQuest (CQ), when a Microsoft SQL Server or an IBM DB2 database is used, allows attackers to corrupt da…
Rational Clearquest
No fix yet
HIGH 7.5
CVE-2007-4368
SQL injection vulnerability in /main in IBM Rational ClearQuest (CQ) Web 7.0.0.0-IFIX02 and 7.0.0.1 allows remote attackers to execute arbitrary SQL …
Rational Clearquest
No fix yet
MEDIUM 6.9
CVE-2007-4238
AIX 5.2 and 5.3 install pioinit with user and group ownership of bin, which allows local users with bin or possibly printq privileges to gain root pr…
Aix
Mitigation only
MEDIUM 6.9
CVE-2007-3333
Stack-based buffer overflow in capture in IBM AIX 5.3 SP6 and 5.2.0 allows remote attackers to execute arbitrary code via a large number of terminal …
Aix
Mitigation only
MEDIUM 6.9
CVE-2007-4003
pioout in IBM AIX 5.3 SP6 allows local users to execute arbitrary code by specifying a malicious library with the -R (ParseRoutine) command line argu…
Aix
Mitigation only
MEDIUM 6.9
CVE-2007-4004
Buffer overflow in the ftp client in IBM AIX 5.3 SP6 and 5.2.0 allows local users to execute arbitrary code via unspecified vectors that trigger the …
Aix
Mitigation only
HIGH 9.3
CVE-2007-3831
PHP remote file inclusion in main.php in ISS Proventia Network IPS GX5108 1.3 and GX5008 1.5 allows remote attackers to execute arbitrary PHP code vi…
Proventia Network Ips Gx5008
Mitigation only
HIGH 7.8
CVE-2007-3537
IBM OS/400 (aka i5/OS) V4R2M0 through V5R3M0 on iSeries machines sends responses to TCP SYN-FIN packets, which allows remote attackers to obtain syst…
Os 400
Mitigation only
MEDIUM 6.4
CVE-2007-3128
SQL injection vulnerability in content.php in WSPortal 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL comma…
Websphere Portal
Mitigation only
MEDIUM 5.0
CVE-2007-3127
content.php in WSPortal 1.0, when magic_quotes_gpc is disabled, allows remote attackers to obtain sensitive information via a "';" (quote semicolon) …
Websphere Portal
Mitigation only
HIGH 10.0
CVE-2007-3232
The IBM TotalStorage DS400 with firmware 4.15 uses a blank password for the (1) root, (2) user, (3) manager, (4) administrator, and (5) operator acco…
Totalstorage Ds400
Mitigation only
HIGH 9.3
CVE-2007-0068
IBM Lotus Domino 7.0.x before 7.0.3 does not revalidate the signature on a signed scheduled agent after the agent is modified, which allows remote au…
Lotus Domino
Mitigation only
HIGH 7.2
CVE-2007-1798
Buffer overflow in the drmgr command in IBM AIX 5.2 and 5.3 allows local users to cause a denial of service (crash) and possibly execute arbitrary co…
Aix
Mitigation only
HIGH 7.8
CVE-2007-1739
Heap-based buffer overflow in the LDAP server in IBM Lotus Domino before 6.5.6 and 7.x before 7.0.2 FP1 allows remote attackers to cause a denial of …
Lotus Domino
No fix yet
HIGH 7.2
CVE-2007-0978
Buffer overflow in swcons in IBM AIX 5.3 allows local users to gain privileges via long input data.
Aix
Mitigation only
HIGH 7.1
CVE-2007-0977EPSS 19%
IBM Lotus Domino R5 and R6 WebMail, with "Generate HTML for all fields" enabled, stores HTTPPassword hashes from names.nsf in a manner accessible thr…
Lotus Domino
No fix yet
MEDIUM 5.0
CVE-2007-0442
Unspecified vulnerability in IBM OS/400 R530 and R535 has unknown impact and remote attack vectors, related to an "Integrity Problem" involving LIC-T…
Os 400
Mitigation only
HIGH 10.0
CVE-2006-6836
Multiple unspecified vulnerabilities in osp-cert in IBM OS/400 V5R3M0 have unspecified impact and attack vectors, related to ASN.1 parsing.
Os 400
No fix yet
HIGH 7.5
CVE-2006-6537
IBM WebSphere Host On-Demand 6.0, 7.0, 8.0, 9.0, and possibly 10, allows remote attackers to bypass authentication via a modified pnl parameter, rela…
Websphere Host On Demand
Mitigation only
MEDIUM 6.4
CVE-2006-5161
IBM Client Security Password Manager stores and distributes saved passwords based upon the title of a website, which allows remote attackers to obtai…
Client Security Password Manager
Mitigation only