Vulnerability index

Browse CVEs

6,336 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Aix HIGH 7.2
CVE-2000-1120

Buffer overflow in digest command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands.

Patch available
Fix from $1,950 2001-01-09
Aix HIGH 7.2
CVE-2000-1121

Buffer overflow in enq command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long -M argument.

Patch available
Fix from $1,950 2001-01-09
Aix HIGH 7.2
CVE-2000-1122

Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long argument.

Patch available
Fix from $1,950 2001-01-09
Aix HIGH 7.2
CVE-2000-1123

Buffer overflow in pioout command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands.

Patch available
Fix from $1,950 2001-01-09
Aix HIGH 7.2
CVE-2000-1124

Buffer overflow in piobe command in IBM AIX 4.3.x allows local users to gain privileges via long environmental variables.

Patch available
Fix from $1,950 2001-01-09
Net.data MEDIUM 5.0
CVE-2000-1110

document.d2w CGI program in the IBM Net.Data db2www package allows remote attackers to determine the physical path of the web server by sending a non…

No fix yet
Fix from $1,600 2001-01-09
Lotus Notes MEDIUM 5.0
CVE-2000-1117

The Extended Control List (ECL) feature of the Java Virtual Machine (JVM) in Lotus Notes Client R5 allows malicious web site operators to determine t…

No fix yet
Fix from $1,600 2001-01-09
Tivoli Management Framework HIGH 9.0
CVE-2000-1239

The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, w…

Mitigation only
Fix from $1,950 2000-12-31
As400 Firewall MEDIUM 5.0
CVE-2000-1038

The web administration interface for IBM AS/400 Firewall allows remote attackers to cause a denial of service via an empty GET request.

Patch available
Fix from $1,600 2000-12-11
Aix HIGH 7.2
CVE-2000-1222

AIX sysback before 4.2.1.13 uses a relative path to find and execute the hostname program, which allows local users to gain privileges by modifying t…

Fix: after 4.2.1.12
Fix from $1,950 2000-12-10
Websphere Application Server HIGH 10.0
CVE-2000-0848EPSS 6%

Buffer overflow in IBM WebSphere web application server (WAS) allows remote attackers to execute arbitrary commands via a long Host: request header.

Patch available
Fix from $1,950 2000-11-14
Net.data HIGH 10.0
CVE-2000-0677

Buffer overflow in IBM Net.Data db2www CGI program allows remote attackers to execute arbitrary commands via a long PATH_INFO environmental variable.

Mitigation only
Fix from $1,950 2000-10-20
Os2 Ftp Server MEDIUM 5.0
CVE-2000-0761

OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username.

Patch available
Fix from $1,600 2000-10-20
Websphere Application Server MEDIUM 5.0
CVE-2000-0652EPSS 8%

IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which c…

Patch available
Fix from $1,600 2000-07-24
Aix HIGH 7.2
CVE-2000-0466

AIX cdmount allows local users to gain root privileges via shell metacharacters.

Patch available
Fix from $1,950 2000-06-20
Websphere Application Server HIGH 7.5
CVE-2000-0497

IBM WebSphere server 3.0.2 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in uppe…

Patch available
Fix from $1,950 2000-06-08
Aix MEDIUM 5.0
CVE-2000-0441

Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.

Mitigation only
Fix from $1,600 2000-05-24
Aix HIGH 7.2
CVE-2000-0249

The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program.

Mitigation only
Fix from $1,950 2000-04-26
Aix HIGH 7.2
CVE-2000-1216

Buffer overflow in portmir for AIX 4.3.0 allows local users to corrupt lock files and gain root privileges via the echo_error routine.

Mitigation only
Fix from $1,950 2000-01-27
Aix HIGH 7.2
CVE-1999-1589

Unspecified vulnerability in crontab in IBM AIX 3.2 allows local users to gain root privileges via unknown attack vectors.

Patch available
Fix from $1,950 1999-12-31
System Data Repository MEDIUM 5.0
CVE-1999-1488

sdrd daemon in IBM SP2 System Data Repository (SDR) allows remote attackers to read files without authentication.

Patch available
Fix from $1,600 1999-12-31
Network Station Manager MEDIUM 6.2
CVE-2000-0027

IBM Network Station Manager NetStation allows local users to gain privileges via a symlink attack.

No fix yet
Fix from $1,600 1999-12-27
Websphere Application Server HIGH 7.2
CVE-1999-0852

IBM WebSphere sets permissions that allow a local user to modify a deinstallation script or its data files stored in /usr/bin.

Mitigation only
Fix from $1,950 1999-12-02
Aix HIGH 10.0
CVE-1999-0835

Denial of service in BIND named via malformed SIG records.

Mitigation only
Fix from $1,950 1999-11-10
Homepageprint HIGH 7.5
CVE-1999-1531

Buffer overflow in IBM HomePagePrint 1.0.7 for Windows98J allows a malicious Web site to execute arbitrary code on a viewer's system via a long IMG_S…

Patch available
Fix from $1,950 1999-11-02
Aix HIGH 7.5
CVE-1999-0903

genfilt in the AIX Packet Filtering Module does not properly filter traffic to destination ports greater than 32767.

Mitigation only
Fix from $1,950 1999-10-26
Aix HIGH 7.2
CVE-1999-1583

Buffer overflow in nslookup for AIX 4.3 allows local users to execute arbitrary code via a long hostname command line argument.

Patch available
Fix from $1,950 1999-09-30
Aix HIGH 10.0
CVE-1999-0789

Buffer overflow in AIX ftpd in the libc library.

No fix yet
Fix from $1,950 1999-09-28
Aix HIGH 7.2
CVE-1999-1013

named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to gain root access via the -f parameter and a malform…

Patch available
Fix from $1,950 1999-09-23
Aix HIGH 10.0
CVE-1999-0745

Buffer overflow in Source Code Browser Program Database Name Server Daemon (pdnsd) for the IBM AIX C Set ++ compiler.

No fix yet
Fix from $1,950 1999-08-18