Vulnerability index

Browse CVEs

6,336 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Lotus Domino MEDIUM 6.4
CVE-2004-2369

Directory traversal vulnerability in webadmin.nsf for Lotus Domino R6 6.5.1 allows attackers to create and detect directories via a .. (dot dot) in t…

No fix yet
Fix from $1,600 2004-12-31
Lotus Notes MEDIUM 5.0
CVE-2004-2280EPSS 9%

Buffer overflow in IBM Lotus Notes 6.5.x before 6.5.3 and 6.0.x before 6.0.5 allows remote attackers to cause a denial of service (crash) via unknown…

Patch available
Fix from $1,600 2004-12-31
Tivoli Directory Server MEDIUM 5.0
CVE-2004-2526EPSS 9%

Directory traversal vulnerability in ldacgi.exe in IBM Tivoli Directory Server 4.1 and earlier allows remote attackers to view arbitrary files via a …

Fix: after 4.1
Fix from $1,600 2004-12-31
Aix HIGH 7.2
CVE-2004-1329

Untrusted execution path vulnerability in the diag commands (1) lsmcode, (2) diag_exec, (3) invscout, and (4) invscoutd in AIX 5.1 through 5.3 allows…

Patch available
Fix from $1,950 2004-12-20
Lotus Notes HIGH 10.0
CVE-2004-0480EPSS 9%

Argument injection vulnerability in IBM Lotus Notes 6.0.3 and 6.5 allows remote attackers to execute arbitrary code via a notes: URI that uses a UNC …

Patch available
Fix from $1,950 2004-12-06
Cloudscape HIGH 10.0
CVE-2004-0253

IBM Cloudscape 5.1 running jdk 1.4.2_03 allows remote attackers to execute arbitrary programs or cause a denial of service via certain SQL code, poss…

Mitigation only
Fix from $1,950 2004-11-23
Aix MEDIUM 5.0
CVE-2004-0243

AIX 4.3.3 through AIX 5.1, when direct remote login is disabled, displays a different message if the password is correct, which allows remote attacke…

Fix: after 5.1
Fix from $1,600 2004-11-23
Db2 Universal Database HIGH 7.2
CVE-2004-0795

DB2 8.1 remote command server (DB2RCMD.EXE) executes the db2rcmdc.exe program as the db2admin administrator, which allows local users to gain privile…

Patch available
Fix from $1,950 2004-10-20
Db2 Universal Database HIGH 7.2
CVE-2002-1583

Buffer overflow in sqllib/security/db2ckpw for IBM DB2 Universal Database 6.0 and 7.0 allows local users to execute arbitrary code via a long usernam…

Patch available
Fix from $1,950 2004-09-28
Db2 HIGH 7.2
CVE-2003-1051

Multiple format string vulnerabilities in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via certain command line arg…

Patch available
Fix from $1,950 2004-09-28
Db2 HIGH 7.2
CVE-2003-1052

IBM DB2 7.1 and 8.1 allow the bin user to gain root privileges by modifying the shared libraries that are used in setuid root programs.

Patch available
Fix from $1,950 2004-09-28
Db2 Universal Database HIGH 7.2
CVE-2004-1372

Multiple stack-based buffer overflows in IBM DB2 7.x and 8.1 allow local users to execute arbitrary code via (1) a long third argument to the rec2xml…

Patch available
Fix from $1,950 2004-09-01
Acprunner HIGH 10.0
CVE-2004-0586

acpRunner ActiveX 1.2.5.0 allows remote attackers to execute arbitrary code via the (1) DownLoadURL, (2) SaveFilePath, and (3) Download ActiveX metho…

Mitigation only
Fix from $1,950 2004-08-06
Lotus Domino HIGH 7.5
CVE-2004-0669

Lotus Domino 6.5.0 and 6.5.1, with IMAP enabled, allows remote authenticated users to change their quota by using the IMAP setquota command.

Mitigation only
Fix from $1,950 2004-08-06
Aix HIGH 7.2
CVE-2004-0544

Multiple buffer overflows in LVM for AIX 5.1 and 5.2 allow local users to gain privileges via the (1) putlvcb or (2) getlvcb commands.

Patch available
Fix from $1,950 2004-08-06
Aix HIGH 7.2
CVE-2004-0545

LVM for AIX 5.1 and 5.2 allows local users to overwrite arbitrary files via a symlink attack.

Patch available
Fix from $1,950 2004-08-06
Websphere Caching Proxy Server MEDIUM 5.0
CVE-2004-0684

WebSphere Edge Component Caching Proxy in WebSphere Edge Server 5.02, with the JunctionRewrite directive enabled, allows remote attackers to cause a …

Mitigation only
Fix from $1,600 2004-08-06
Aix HIGH 7.2
CVE-2003-0257

Format string vulnerability in the printer capability for IBM AIX .3, 5.1, and 5.2 allows local users to gain printq or root privileges.

Patch available
Fix from $1,950 2004-04-15
Aix HIGH 10.0
CVE-2003-0170

Unknown vulnerability in ftpd in IBM AIX 5.2, when configured to use Kerberos 5 for authentication, allows remote attackers to gain privileges via un…

Patch available
Fix from $1,950 2004-03-29
Aix HIGH 7.2
CVE-2003-1018

Format string vulnerability in enq command in AIX 4.3, 5.1, and 5.2 allows local users with rintq group privileges to gain privileges via unknown att…

Patch available
Fix from $1,950 2004-03-29
Aix HIGH 7.5
CVE-2003-0119

The secldapclntd daemon in AIX 4.3, 5.1 and 5.2 uses an Internet socket when communicating with the loadmodule, which allows remote attackers to dire…

Patch available
Fix from $1,950 2004-02-03
Informix Dynamic Server HIGH 7.2
CVE-2004-2131

Stack-based buffer overflow in ontape for IBM Informix Dynamic Server (IDS) 9.40.xC3 and earlier allows local users, with DSA privileges, to execute …

Patch available
Fix from $1,950 2004-01-27
Aix MEDIUM 5.0
CVE-2003-0696

The getipnodebyname() API in AIX 5.1 and 5.2 does not properly close sockets, which allows attackers to cause a denial of service (resource exhaustio…

Patch available
Fix from $1,600 2004-01-20
Tivoli Firewall Toolbox HIGH 10.0
CVE-2003-1104EPSS 7%

Buffer overflow in IBM Tivoli Firewall Toolbox (TFST) 1.2 allows remote attackers to execute arbitrary code via unknown vectors.

Patch available
Fix from $1,950 2003-12-31
Aix HIGH 7.2
CVE-2003-0954

Buffer overflow in rcp for AIX 4.3.3, 5.1 and 5.2 allows local users to gain privileges.

Patch available
Fix from $1,950 2003-12-31
Db2 Universal Database HIGH 7.5
CVE-2003-0836

Stack-based buffer overflow in IBM DB2 Universal Data Base 7.2 before Fixpak 10 and 10a, and 8.1 before Fixpak 2, allows attackers with "Connect" pri…

Mitigation only
Fix from $1,950 2003-11-17
Db2 Universal Database HIGH 7.5
CVE-2003-0837

Stack-based buffer overflow in IBM DB2 Universal Data Base 7.2 for Windows, before Fixpak 10a, allows attackers with "Connect" privileges to execute …

Patch available
Fix from $1,950 2003-11-17
Aix HIGH 10.0
CVE-2003-0784

Format string vulnerability in tsm for the bos.rte.security fileset on AIX 5.2 allows remote attackers to gain root privileges via login, and local u…

Mitigation only
Fix from $1,950 2003-10-06
Aix HIGH 7.2
CVE-2003-0697

Format string vulnerability in lpd in the bos.rte.printers fileset for AIX 4.3 through 5.2, with debug enabled, allows local users to cause a denial …

Mitigation only
Fix from $1,950 2003-10-06
Db2 Universal Database HIGH 7.2
CVE-2003-0758

Buffer overflow in db2dart in IBM DB2 Universal Data Base 7.2 before Fixpak 10 allows local users to gain root privileges via a long command line arg…

Patch available
Fix from $1,950 2003-10-06