Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2020-4286
IBM InfoSphere Information Server 11.3, 11.5, and 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious…
Infosphere Information Server
Patch available
MEDIUM 5.4
CVE-2020-4298
IBM InfoSphere Information Server 11.3, 11.5, and 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Java…
Infosphere Information Server
Patch available
MEDIUM 5.3
CVE-2020-4412
The Spectrum Scale 4.2.0.0 through 4.2.3.21 and 5.0.0.0 through 5.0.4.3 file system component is affected by a denial of service security vulnerabili…
Spectrum Scale
after 5.0.4.3
HIGH 7.8
CVE-2020-4266
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By per…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4285
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption error.…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4287
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption error.…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4288
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption error.…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4343
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption. By pe…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4422
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption. By pe…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4467
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by memory corruption. By pers…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4468
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by memory corruption. By pers…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4257
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By per…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4258
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By per…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4261
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By per…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4262
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By per…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4263
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By per…
I2 Analysts Notebook
Mitigation only
HIGH 7.8
CVE-2020-4264
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By per…
I2 Analysts Notebook
Mitigation only
HIGH 7.3
CVE-2020-4265
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By per…
I2 Analysts Notebook
Mitigation only
MEDIUM 6.5
CVE-2020-4259
IBM Sterling File Gateway 2.2.0.0 through 6.0.3.1 could allow an authenticated user could manipulate cookie information and remove or add modules fro…
Sterling File Gateway
after 6.0.3.1
MEDIUM 6.5
CVE-2019-4478
IBM Maximo Asset Management 7.6.0, and 7.6.1 could allow an authenticated user to obtain highly sensitive information that they should not normally h…
Maximo Asset Management
Patch available
MEDIUM 5.4
CVE-2020-4195
IBM API Connect V2018.4.1.0 through 2018.4.1.10 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to …
Api Connect
after 2018.4.1.10
MEDIUM 5.3
CVE-2020-4346
IBM API Connect's V2018.4.1.0 through 2018.4.1.10 management server has an unsecured api which can be exploited by an unauthenticated attacker to obt…
Api Connect
after 2018.4.1.10
MEDIUM 5.9
CVE-2019-4667
IBM UrbanCode Deploy (UCD) 7.0.5.2 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Stric…
Urbancode Deploy
Mitigation only
CRITICAL 9.8
CVE-2020-4427 KEVEPSS 70%
IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 could allow a remote attacker to bypass security restrictions when configured with…
Data Risk Manager
after 2.0.6.1
CRITICAL 9.8
CVE-2020-4429EPSS 71%
IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 contains a default password for an IDRM administrative account. A remote attacker …
Data Risk Manager
Patch available
CRITICAL 9.1
CVE-2020-4428 KEVEPSS 62%
IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, and 2.0.4 could allow a remote authenticated attacker to execute arbitrary commands on the system. IBM X-F…
Data Risk Manager
after 2.0.4
MEDIUM 5.4
CVE-2020-4384
IBM InfoSphere Information Server 11.3, 11.5, and 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Java…
Infosphere Information Server On Cloud
Mitigation only
MEDIUM 5.4
CVE-2020-4421
IBM WebSphere Application Liberty 19.0.0.5 through 20.0.0.4 could allow an authenticated user using openidconnect to spoof another users identify. IB…
Websphere Application Server
20.0.0.5+
MEDIUM 5.4
CVE-2020-4209
IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote attacker to traverse directories on the system. An attacker could send a special…
Spectrum Protect Plus
after 10.1.5
HIGH 8.8
CVE-2019-4750
IBM Cloud App Management 2019.3.0 and 2019.4.0 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and una…
Cloud App Management
Mitigation only