Vulnerability index

Browse CVEs

6,336 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Websphere Application Server MEDIUM 5.0
CVE-2006-4137

IBM WebSphere Application Server before 6.1.0.1 allows attackers to obtain sensitive information via unspecified vectors related to (1) the log file,…

Patch available
Fix from $1,600 2006-08-14
Informix Dynamic Server HIGH 7.5
CVE-2006-3862

Buffer overflow in IBM Informix Dynamic Server (IDS) 9.40.TC5 through 9.40.xC7 and 10.00.TC1 through 10.00.xC3 allows attackers to execute arbitrary …

Patch available
Fix from $1,950 2006-08-08
Informix Dynamic Server MEDIUM 6.5
CVE-2006-3855

The ifx_load_internal function in IBM Informix Dynamic Server (IDS) allows remote authenticated users to execute arbitrary C code via the DllMain or …

Patch available
Fix from $1,600 2006-08-08
Informix Dynamic Database Server MEDIUM 6.5
CVE-2006-3857

Multiple buffer overflows in IBM Informix Dynamic Server (IDS) before 9.40.TC6 and 10.00 before 10.00.TC3 allow remote authenticated users to execute…

Patch available
Fix from $1,600 2006-08-08
Informix Dynamic Server MEDIUM 5.1
CVE-2006-3853

Buffer overflow in IBM Informix Dynamic Server (IDS) before 9.40.TC7 and 10.00 before 10.00.TC3, when running on Windows, allows remote attackers to …

Patch available
Fix from $1,600 2006-08-08
Lotus Notes MEDIUM 5.0
CVE-2006-3778

IBM Lotus Notes 6.0, 6.5, and 7.0 does not properly handle replies to e-mail messages with alternate name users when the (1) "Save As Draft" option i…

No fix yet
Fix from $1,600 2006-07-24
Websphere Application Server HIGH 10.0
CVE-2006-3232

Unspecified vulnerability in IBM WebSphere Application Server before 6.0.2.11 has unknown impact and attack vectors because the "UserNameToken cache …

Patch available
Fix from $1,950 2006-06-27
Db2 Universal Database MEDIUM 5.0
CVE-2006-3066

Buffer overflow in the TCP/IP listener in IBM DB2 Universal Database (UDB) before 8.1 FixPak 12 allows remote attackers to cause a denial of service …

Fix: after 8.10
Fix from $1,600 2006-06-19
Db2 Universal Database MEDIUM 5.0
CVE-2006-3067

Multiple unspecified vulnerabilities in IBM DB2 Universal Database (UDB) before 8.1 FixPak 12 allow remote attackers to cause a denial of service (ap…

Fix: after 8.1
Fix from $1,600 2006-06-19
Db2 Universal Database MEDIUM 5.0
CVE-2006-3068

IBM DB2 Universal Database (UDB) before 8.2 FixPak 12 allows remote attackers to cause a denial of service (application crash) by sending "incorrect …

Patch available
Fix from $1,600 2006-06-19
Aix HIGH 7.2
CVE-2006-2647

Untrusted search path vulnerability in update_flash for IBM AIX 5.1, 5.2 and 5.3 allows local users to execute arbitrary commands via unknown vectors…

Patch available
Fix from $1,950 2006-05-30
Websphere Application Server HIGH 10.0
CVE-2006-2429

Unspecified vulnerability in IBM WebSphere Application Server 6.0.2, 6.0.2.1, 6.0.2.3, 6.0.2.5, and 6.0.2.7 has unknown impact and remote attack vect…

Patch available
Fix from $1,950 2006-05-17
Websphere Application Server HIGH 10.0
CVE-2006-2430

IBM WebSphere Application Server 5.0.2 and earlier, 5.1.1 and earlier, and 6.0.2 up to 6.0.2.7 records user credentials in plaintext in addNode.log, …

Patch available
Fix from $1,950 2006-05-17
Websphere Application Server HIGH 10.0
CVE-2006-2433

Unspecified vulnerability in IBM WebSphere Application Server 6.0.2, 6.0.2.1, 6.0.2.3, 6.0.2.5, and 6.0.2.7 has unknown impact and attack vectors rel…

Patch available
Fix from $1,950 2006-05-17
Websphere Application Server HIGH 7.5
CVE-2006-2432

IBM WebSphere Application Server 5.0.2 (or any earlier cumulative fix) and 5.1.1 (or any earlier cumulative fix) allows EJB access on Solaris systems…

Patch available
Fix from $1,950 2006-05-17
Websphere Application Server HIGH 7.5
CVE-2006-2436

WebSphere Application Server 5.0.2 (or any earlier cumulative fix) stores admin and LDAP passwords in plaintext in the FFDC logs when a login to WebS…

Patch available
Fix from $1,950 2006-05-17
Websphere Application Server MEDIUM 6.4
CVE-2006-2435

Unspecified vulnerability in IBM WebSphere Application Server 5.0.2 and earlier, and 5.1.1 and earlier, has unknown impact and attack vectors related…

Patch available
Fix from $1,600 2006-05-17
Websphere Application Server MEDIUM 5.0
CVE-2006-2434

Unspecified vulnerability in WebSphere 5.1.1 (or any earlier cumulative fix) Common Configuration Mode + CommonArchive and J2EE Models might allow at…

Patch available
Fix from $1,600 2006-05-17
Websphere Application Server HIGH 7.5
CVE-2006-2342

IBM WebSphere Application Server 6.0.2 before FixPack 3 allows remote attackers to bypass authentication for the Welcome Page via a request to the de…

Patch available
Fix from $1,950 2006-05-12
Websphere Application Server MEDIUM 5.0
CVE-2006-1619

IBM WebSphere Application Server 4.0.1 through 4.0.3 allows remote attackers to cause a denial of service (application crash) via an HTTP request wit…

Mitigation only
Fix from $1,600 2006-04-05
Aix HIGH 7.2
CVE-2006-1246

Unspecified vulnerability in mklvcopy in BOS.RTE.LVM in IBM AIX 5.3 allows local users to execute arbitrary commands when mklvcopy calls external com…

Patch available
Fix from $1,950 2006-03-17
Websphere Application Server MEDIUM 6.4
CVE-2006-1093

Unspecified vulnerability in IBM WebSphere 5.0.2.10 through 5.0.2.15 and 5.1.1.4 through 5.1.1.9 allows remote attackers to obtain sensitive informat…

Mitigation only
Fix from $1,600 2006-03-09
Tivoli Directory Server MEDIUM 5.0
CVE-2006-0717EPSS 10%

IBM Tivoli Directory Server 6.0 allows remote attackers to cause a denial of service (crash) via a crafted LDAP request, as demonstrated by test 2532…

No fix yet
Fix from $1,600 2006-02-15
Lotus Domino Server MEDIUM 5.0
CVE-2006-0580

IBM Lotus Domino Server 7.0 allows remote attackers to cause a denial of service (segmentation fault) via a crafted packet to the LDAP port (389/TCP).

Mitigation only
Fix from $1,600 2006-02-08
Tivoli Access Manager For E Business MEDIUM 5.0
CVE-2006-0513EPSS 9%

Directory traversal vulnerability in pkmslogout in Tivoli Web Server Plug-in 5.1.0.10 in Tivoli Access Manager (TAM) 5.1 allows remote attackers to r…

Patch available
Fix from $1,600 2006-02-06
Lotus Domino HIGH 10.0
CVE-2006-0119

Multiple unspecified vulnerabilities in IBM Lotus Notes and Domino Server before 6.5.5 have unknown impact and attack vectors, due to "potential secu…

Patch available
Fix from $1,950 2006-01-09
Lotus Domino HIGH 7.8
CVE-2006-0121

Multiple memory leaks in IBM Lotus Notes and Domino Server before 6.5.5 allow attackers to cause a denial of service (memory consumption and crash) v…

Patch available
Fix from $1,950 2006-01-09
Lotus Domino MEDIUM 5.0
CVE-2006-0117

Buffer overflow in IBM Lotus Notes and Domino Server before 6.5.5 allows attackers to cause a denial of service (router crash or hang) via unspecifie…

Patch available
Fix from $1,600 2006-01-09
Lotus Domino MEDIUM 5.0
CVE-2006-0118

Unspecified vulnerability in IBM Lotus Notes and Domino Server before 6.5.5, when running on AIX, allows attackers to cause a denial of service (deep…

Patch available
Fix from $1,600 2006-01-09
Lotus Domino MEDIUM 5.0
CVE-2006-0120

Multiple unspecified vulnerabilities in IBM Lotus Notes and Domino Server before 6.5.5 allow attackers to cause a denial of service (application cras…

Patch available
Fix from $1,600 2006-01-09