Vulnerability index

Browse CVEs

6,336 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Db2 Universal Database HIGH 10.0
CVE-2005-4865EPSS 6%

Stack-based buffer overflow in call in IBM DB2 7.x and 8.1 allows remote attackers to execute arbitrary code via a long libname.

Patch available
Fix from $1,950 2005-12-31
Db2 Universal Database HIGH 9.3
CVE-2005-4867EPSS 5%

Stack-based buffer overflow in the SATENCRYPT function in IBM DB2 8.1, when Satellite Administration (SATADMIN) is enabled, allows remote attackers t…

Patch available
Fix from $1,950 2005-12-31
Lotus Domino HIGH 7.8
CVE-2005-2712

The LDAP server (nldap.exe) in IBM Lotus Domino before 7.0.1, 6.5.5, and 6.5.4 FP2 allows remote attackers to cause a denial of service (crash) via a…

Patch available
Fix from $1,950 2005-12-31
Db2 Universal Database HIGH 7.5
CVE-2005-4737

IBM DB2 Universal Database (UDB) 820 before ESE AIX 5765F4100 allows remote authenticated users to cause a denial of service (CPU consumption) by "ab…

Patch available
Fix from $1,950 2005-12-31
Db2 Universal Database HIGH 7.2
CVE-2005-4863

Stack-based buffer overflow in db2fmp in IBM DB2 7.x and 8.1 allows local users to execute arbitrary code via a long parameter.

Patch available
Fix from $1,950 2005-12-31
Db2 Universal Database HIGH 7.2
CVE-2005-4864

Stack-based buffer overflow in libdb2.so in IBM DB2 7.x and 8.1 allows local users to execute arbitrary code via a long DB2LPORT environment variable.

Patch available
Fix from $1,950 2005-12-31
Db2 Universal Database HIGH 7.1
CVE-2005-4868

Shared memory sections and events in IBM DB2 8.1 have default permissions of read and write for the Everyone group, which allows local users to gain …

Patch available
Fix from $1,950 2005-12-31
Db2 Universal Database MEDIUM 6.8
CVE-2005-4735

IBM DB2 Universal Database (UDB) 810 before 8.1 FP10 allows remote authenticated users to cause a denial of service (application crash) via (1) certa…

Patch available
Fix from $1,600 2005-12-31
Db2 Universal Database MEDIUM 6.8
CVE-2005-4736

IBM DB2 Universal Database (UDB) 820 before 8.2 FP10 allows remote authenticated users to cause a denial of service (disk consumption) via a hash joi…

Patch available
Fix from $1,600 2005-12-31
Db2 Universal Database MEDIUM 6.8
CVE-2005-4739

IBM DB2 Universal Database (UDB) 820 before version 8 FixPak 10 (s050811) allows remote authenticated users to cause a denial of service (application…

Patch available
Fix from $1,600 2005-12-31
Lotus Domino MEDIUM 6.8
CVE-2005-4819

Cross-site scripting (XSS) vulnerability in Lotus Domino versions before 6.5.4 fix pack 1 (FP1) and versions before 7.0 allows remote attackers to in…

Patch available
Fix from $1,600 2005-12-31
Db2 Universal Database MEDIUM 6.8
CVE-2005-4866

Stack-based buffer overflow in JDBC Applet Server in IBM DB2 8.1 allows remote attackers to execute arbitrary by connecting and sending a long userna…

Patch available
Fix from $1,600 2005-12-31
Db2 Universal Database MEDIUM 6.5
CVE-2005-4738

IBM DB2 Universal Database (UDB) 810 before ESE AIX 5765F4100 does not ensure that a user has execute privileges before permitting object creation ba…

Patch available
Fix from $1,600 2005-12-31
Websphere Application Server MEDIUM 5.0
CVE-2005-4834

IBM WebSphere Application Server (WAS) 5.0.2.5 through 5.1.1.3 allows remote attackers to obtain JSP source code and other sensitive information, rel…

Patch available
Fix from $1,600 2005-12-31
Aix HIGH 10.0
CVE-2005-4272EPSS 9%

Multiple buffer overflows in IBM AIX 5.1, 5.2, and 5.3 allow remote attackers to execute arbitrary code via (1) muxatmd and (2) slocal.

Patch available
Fix from $1,950 2005-12-15
Aix HIGH 7.2
CVE-2005-4271

Buffer overflow in the malloc debug system in IBM AIX 5.3 allows local users to execute arbitrary code.

Patch available
Fix from $1,950 2005-12-15
Aix HIGH 7.2
CVE-2005-4068

Unspecified "absolute path vulnerability" in umountall in IBM AIX 5.1 through 5.3 allows local users to cause unknown impact via unknown vectors.

Patch available
Fix from $1,950 2005-12-08
Websphere Application Server HIGH 7.8
CVE-2005-3760

Double free vulnerability in the BBOORB module in IBM WebSphere Application Server for z/OS 5.0 allows attackers to cause a denial of service (ABEND).

Patch available
Fix from $1,950 2005-11-22
Aix HIGH 7.2
CVE-2005-3749

Unspecified "absolute path vulnerabilities" in the diagela command (diagela.sh) in IBM AIX 5.2 and 5.3 have unknown impact and attack vectors.

Patch available
Fix from $1,950 2005-11-22
Informix Dynamic Database Server HIGH 7.5
CVE-2005-3642

IBM Informix Dynamic Database server running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication and log…

Mitigation only
Fix from $1,950 2005-11-16
Db2 Universal Database HIGH 7.5
CVE-2005-3643

IBM DB2 Database server running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication and log on to the gu…

Mitigation only
Fix from $1,950 2005-11-16
Tivoli Directory Server MEDIUM 5.8
CVE-2005-3567

slapd daemon in IBM Tivoli Directory Server (ITDS) 5.2.0 and 6.0.0 binds using SASL EXTERNAL, which allows attackers to bypass authentication and mod…

Patch available
Fix from $1,600 2005-11-16
Db2 Content Manager MEDIUM 5.0
CVE-2005-3569

INSO service in IBM DB2 Content Manager before 8.2 Fix Pack 10 on AIX allows attackers to cause a denial of service (application crash) via unknown a…

Mitigation only
Fix from $1,600 2005-11-16
Aix HIGH 7.5
CVE-2005-3504

Buffer overflow in swcons in IBM AIX 5.2, when debug malloc is enabled, allows remote attackers to cause a core dump and possibly execute arbitrary c…

Patch available
Fix from $1,950 2005-11-05
Aix HIGH 7.5
CVE-2005-3396

Buffer overflow in the chcons (chcon) command in IBM AIX 5.2 and 5.3, when DEBUG MALLOC is enabled, might allow attackers to execute arbitrary code v…

Patch available
Fix from $1,950 2005-11-01
Aix HIGH 7.2
CVE-2005-3060

Buffer overflow in getconf in IBM AIX 5.2 to 5.3 allows local users to execute arbitrary code via unknown vectors.

Patch available
Fix from $1,950 2005-09-30
Rational Clearquest MEDIUM 6.8
CVE-2005-2994

Unspecified vulnerability in the web client for IBM Rational ClearQuest 2002.05.00 and 2002.05.20, and 2003.06.00 through 2003.06.15 before SR5, allo…

Mitigation only
Fix from $1,600 2005-09-20
Lotus Notes MEDIUM 5.0
CVE-2005-2696

IBM Lotus Notes does not properly restrict access to password hashes in the Notes Address Book (NAB), which allows remote attackers to obtain sensiti…

No fix yet
Fix from $1,600 2005-08-26
Lotus Domino MEDIUM 5.0
CVE-2005-2428EPSS 73%

Lotus Domino R5 and R6 WebMail, with "Generate HTML for all fields" enabled, stores sensitive data from names.nsf in hidden form fields, which allows…

No fix yet
Fix from $1,600 2005-08-03
Aix HIGH 7.2
CVE-2005-2233

Buffer overflow in multiple "p" commands in IBM AIX 5.1, 5.2 and 5.3 might allow local users to execute arbitrary code via long command line argument…

Patch available
Fix from $1,950 2005-07-12