Vulnerability index

Browse CVEs

6,336 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Tivoli Storage Manager Fastback HIGH 7.8
CVE-2015-1924

Stack-based buffer overflow in the server in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.12 allows remote attackers to cause a denial of servi…

Mitigation only
Fix from $1,950 2015-06-30
Tivoli Storage Manager Fastback HIGH 7.8
CVE-2015-1923EPSS 19%

Buffer overflow in the server in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.12 allows remote attackers to cause a denial of service (daemon c…

Mitigation only
Fix from $1,950 2015-06-30
Rational Test Virtualization Server MEDIUM 5.0
CVE-2015-1913

Rational Test Control Panel in IBM Rational Test Workbench and Rational Test Virtualization Server 8.0.0.x before 8.0.0.5, 8.0.1.x before 8.0.1.6, 8.…

Patch available
Fix from $1,600 2015-06-30
Infosphere Datastage HIGH 7.2
CVE-2015-1900

IBM InfoSphere DataStage 8.1, 8.5, 8.7, 9.1, and 11.3 through 11.3.1.2 on UNIX allows local users to write to executable files, and consequently obta…

Patch available
Fix from $1,950 2015-06-29
Websphere Commerce MEDIUM 5.0
CVE-2015-0196

CRLF injection vulnerability in IBM WebSphere Commerce 6.0 through 6.0.0.11 and 7.0 before 7.0.0.8 Cumulative iFix 2 allows remote attackers to injec…

Patch available
Fix from $1,600 2015-06-29
Leads MEDIUM 6.5
CVE-2015-0126

IBM Leads 7.x, 8.1.0 before 8.1.0.14, 8.2, 8.5.0 before 8.5.0.7.3, 8.6.0 before 8.6.0.8.1, 9.0.0 through 9.0.0.4, 9.1.0 before 9.1.0.6.1, and 9.1.1 b…

Mitigation only
Fix from $1,600 2015-06-28
Leads MEDIUM 6.0
CVE-2015-0115

Cross-site request forgery (CSRF) vulnerability in IBM Leads 7.x, 8.1.0 before 8.1.0.14, 8.2, 8.5.0 before 8.5.0.7.3, 8.6.0 before 8.6.0.8.1, 9.0.0 t…

Patch available
Fix from $1,600 2015-06-28
Tivoli Directory Server MEDIUM 6.5
CVE-2015-1974

The web administration tool in IBM Tivoli Security Directory Server 6.0 before iFix 75, 6.1 before iFix 68, 6.2 before iFix 44, 6.3 before iFix 37, 6…

Patch available
Fix from $1,600 2015-06-28
Security Network Protection Firmware MEDIUM 6.8
CVE-2014-6198

Cross-site request forgery (CSRF) vulnerability in IBM Security Network Protection 5.3 before 5.3.1 allows remote attackers to hijack the authenticat…

Patch available
Fix from $1,600 2015-06-28
Infosphere Master Data Management Server MEDIUM 6.5
CVE-2015-1945

Unspecified vulnerability in the Reference Data Management component in IBM InfoSphere Master Data Management 10.1, 11.0, 11.3 before FP3, and 11.4 a…

Patch available
Fix from $1,600 2015-06-02
Powervc HIGH 7.5
CVE-2015-1937

IBM PowerVC 1.2.0.x through 1.2.0.4, 1.2.1.x through 1.2.1.2, and 1.2.2.x through 1.2.2.2 does not require authentication for the ceilometer NoSQL da…

Patch available
Fix from $1,950 2015-05-30
Infosphere Information Server MEDIUM 5.5
CVE-2015-0180

The Connector Migration Tool in IBM InfoSphere Information Server 8.1 through 11.3 allows remote authenticated users to bypass intended restrictions …

Patch available
Fix from $1,600 2015-05-25
Security Siteprotector System MEDIUM 5.5
CVE-2015-0171

Directory traversal vulnerability in IBM Security SiteProtector System 3.0 before 3.0.0.7, 3.1 before 3.1.0.4, and 3.1.1 before 3.1.1.2 allows remote…

Mitigation only
Fix from $1,600 2015-05-25
Security Siteprotector System MEDIUM 6.5
CVE-2015-0161

SQL injection vulnerability in IBM Security SiteProtector System 3.0 before 3.0.0.7, 3.1 before 3.1.0.4, and 3.1.1 before 3.1.1.2 allows remote authe…

Mitigation only
Fix from $1,600 2015-05-25
Security Siteprotector System HIGH 9.0
CVE-2015-0160

IBM Security SiteProtector System 3.0 before 3.0.0.7, 3.1 before 3.1.0.4, and 3.1.1 before 3.1.1.2 allows remote authenticated users to execute arbit…

Mitigation only
Fix from $1,950 2015-05-25
Spss Statistics MEDIUM 6.8
CVE-2015-0140

An unspecified ActiveX control in IBM SPSS Statistics 22.0 through FP1 on 32-bit platforms allows remote attackers to execute arbitrary code via a cr…

Patch available
Fix from $1,600 2015-05-25
Tivoli Storage Manager Fastback HIGH 7.5
CVE-2015-0120

Buffer overflow in the FastBackMount process in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.11.1 has unspecified impact and remote attack vect…

Patch available
Fix from $1,950 2015-05-25
Endpoint Manager Family MEDIUM 5.0
CVE-2014-8927

Common Inventory Technology (CIT) before 2.7.0.2050 in IBM License Metric Tool 7.2.2, 7.5, and 9; Endpoint Manger for Software Use Analysis 9; and Ti…

Patch available
Fix from $1,600 2015-05-25
Endpoint Manager Family MEDIUM 5.0
CVE-2014-8926

Common Inventory Technology (CIT) before 2.7.0.2050 in IBM License Metric Tool 7.2.2, 7.5, and 9; Endpoint Manger for Software Use Analysis 9; and Ti…

Patch available
Fix from $1,600 2015-05-25
Workload Deployer MEDIUM 5.0
CVE-2014-6190

The log viewer in IBM Workload Deployer 3.1 before 3.1.0.7 allows remote attackers to obtain sensitive information via a direct request for the URL o…

Patch available
Fix from $1,600 2015-05-25
Endpoint Manager Family MEDIUM 6.8
CVE-2014-4774

Cross-site request forgery (CSRF) vulnerability in the login page in IBM License Metric Tool 9 before 9.1.0.2 and Endpoint Manager for Software Use A…

Mitigation only
Fix from $1,600 2015-05-25
Websphere Portal MEDIUM 6.4
CVE-2015-1921

Open redirect vulnerability in IBM WebSphere Portal 8.0.0 before 8.0.0.1 CF17 and 8.5.0 before CF06 allows remote attackers to redirect users to arbi…

Mitigation only
Fix from $1,600 2015-05-25
Infosphere Master Data Management Server MEDIUM 5.0
CVE-2015-1909

The XML parser in the Reference Data Management component in the server in IBM InfoSphere Master Data Management (MDM) 10.1 before IF1, 11.0 before F…

Patch available
Fix from $1,600 2015-05-25
Websphere Portal HIGH 7.8
CVE-2015-1899

IBM WebSphere Portal 8.5 through CF05 allows remote attackers to cause a denial of service (CPU consumption) via unspecified vectors.

Patch available
Fix from $1,950 2015-05-25
Tivoli Storage Manager Fastback HIGH 10.0
CVE-2015-1896EPSS 32%

Stack-based buffer overflow in the FastBackMount process in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.11.1 allows remote attackers to execut…

Patch available
Fix from $1,950 2015-05-25
Optim Workload Replay MEDIUM 5.0
CVE-2015-1895

IBM InfoSphere Optim Workload Replay 2.x before 2.1.0.3 relies on client-side code to verify authorization, which allows remote attackers to bypass i…

Patch available
Fix from $1,600 2015-05-25
Optim Workload Replay MEDIUM 6.8
CVE-2015-1894

Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Optim Workload Replay 2.x before 2.1.0.3 allows remote attackers to hijack the auth…

Patch available
Fix from $1,600 2015-05-25
Domino HIGH 10.0
CVE-2015-1903EPSS 8%

Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers to execute arbitrary code via…

Patch available
Fix from $1,950 2015-05-20
Domino HIGH 10.0
CVE-2015-1902EPSS 8%

Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers to execute arbitrary code via…

Patch available
Fix from $1,950 2015-05-20
License Metric Tool MEDIUM 6.4
CVE-2014-8924

The server in IBM License Metric Tool 7.2.2 before IF15 and 7.5 before IF24 and Tivoli Asset Discovery for Distributed 7.2.2 before IF15 and 7.5 befo…

Patch available
Fix from $1,600 2015-05-20