Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2013-4027
IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 through 7.1.1.12, and 7.5 before 7.5.0.5 allows remote authenticated users to bypass intended acce…
Maximo Asset Management
Mitigation only
MEDIUM 6.5
CVE-2013-5381
IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 through 7.1.1.12, and 7.5 before 7.5.0.3 allows remote authenticated users to gain privileges via …
Maximo Asset Management
Mitigation only
MEDIUM 6.8
CVE-2012-3323
IBM Maximo Asset Management 6.2 before 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.3 allows remote attackers to gain privileges via unspecified …
Maximo Asset Management
No fix yet
MEDIUM 6.5
CVE-2013-0451
SQL injection vulnerability in IBM Maximo Asset Management 6.2 through 6.2.8 and 7.1 through 7.1.1.12 allows remote authenticated users to execute ar…
Maximo Asset Management
Mitigation only
MEDIUM 6.5
CVE-2013-3047
IBM Maximo Asset Management 7.1 before 7.1.1.12 and 7.5 before 7.5.0.5 allows remote authenticated users to gain privileges via unspecified vectors.
Maximo Asset Management
No fix yet
MEDIUM 6.5
CVE-2013-3973
SQL injection vulnerability in IBM Maximo Asset Management 7.1 before 7.1.1.12 and 7.5 before 7.5.0.5 allows remote authenticated users to execute ar…
Maximo Asset Management
Mitigation only
MEDIUM 6.5
CVE-2013-4017
SQL injection vulnerability in IBM Maximo Asset Management 7.1 before 7.1.1.12 allows remote attackers to execute arbitrary SQL commands via unspecif…
Maximo Asset Management
Mitigation only
MEDIUM 6.0
CVE-2013-4018
IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.5 allows remote authenticated users to obtain sensitive info…
Maximo Asset Management
Mitigation only
MEDIUM 5.0
CVE-2013-4013
IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 through 7.1.1.12, and 7.5 before 7.5.0.2 allows remote attackers to obtain sensitive information v…
Maximo Asset Management
Mitigation only
HIGH 10.0
CVE-2013-4042
Unspecified vulnerability in IBM SPSS Collaboration and Deployment Services 4.2.1 and 5.0 through FP2 allows remote attackers to execute arbitrary co…
Spss Collaboration And Deployment Services
Mitigation only
HIGH 10.0
CVE-2013-5370
Unspecified vulnerability in IBM SPSS Collaboration and Deployment Services 4.2.1 and 5.0 through FP2 allows remote attackers to execute arbitrary co…
Spss Collaboration And Deployment Services
Mitigation only
MEDIUM 6.8
CVE-2013-0598
Cross-site request forgery (CSRF) vulnerability in the Web Client in IBM Rational ClearQuest 7.1 before 7.1.2.12, 8.0 before 8.0.0.8, and 8.0.1 befor…
Rational Clearquest
Mitigation only
HIGH 10.0
CVE-2013-5403
Unspecified vulnerability on the IBM WebSphere DataPower XC10 appliance 2.0 through 2.5.0.1 allows remote attackers to obtain administrative access v…
Websphere Datapower Xc10 Appliance Firmware
Mitigation only
MEDIUM 6.9
CVE-2013-5373
The RemoteClient component in IBM Rational ClearCase 8.0.0.03 through 8.0.0.07, and 8.0.1, uses world-writable permissions for the rcleartool script,…
Rational Clearcase
Mitigation only
MEDIUM 6.8
CVE-2013-4053
The WS-Security implementation in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.31, 8.0 before 8.0.0.8, and 8.5 before…
Websphere Application Server
Mitigation only
HIGH 7.1
CVE-2013-4068
Buffer overflow in iNotes in IBM Domino 8.5.3 before FP5 IF1 and 9.0 before IF4 allows remote authenticated users to execute arbitrary code via unspe…
Lotus Domino
Patch available
HIGH 9.3
CVE-2013-5369
IBM SPSS Analytical Decision Management 6.1 before IF1, 6.2 before IF1, and 7.0 before FP1 IF6 might allow remote attackers to execute arbitrary code…
Spss Analytical Decision Management
Mitigation only
HIGH 8.5
CVE-2013-4049
Unrestricted file upload vulnerability in IBM SPSS Analytical Decision Management 6.1 before IF1, 6.2 before IF1, and 7.0 before FP1 IF6 allows remot…
Spss Analytical Decision Management
Mitigation only
MEDIUM 5.4
CVE-2013-3039
IBM Rational Requirements Composer before 4.0.4 does not properly perform authentication, which has unspecified impact and remote attack vectors.
Rational Requirements Composer
after 4.0.3
MEDIUM 5.4
CVE-2013-3038
Unspecified vulnerability in IBM Rational Requirements Composer before 4.0.4 makes it easier for remote attackers to discover credentials via unknown…
Rational Requirements Composer
after 4.0.3
MEDIUM 6.8
CVE-2013-4062
IBM Rational Policy Tester 8.5 before 8.5.0.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof …
Rational Policy Tester
Mitigation only
MEDIUM 5.0
CVE-2013-0531
The SSL implementation in IBM Security AppScan Enterprise before 8.7.0.1 enables cipher suites with weak encryption algorithms, which makes it easier…
Security Appscan
after 8.7.0.0
MEDIUM 6.8
CVE-2013-3029
Cross-site request forgery (CSRF) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 befo…
Websphere Application Server
Mitigation only
MEDIUM 5.0
CVE-2013-3016
IBM WebSphere Portal 6.1, 7.0, and 8.0 allows remote attackers to access the user directory via a crafted request for a servlet, related to the serve…
Websphere Portal
Mitigation only
HIGH 8.5
CVE-2013-0526EPSS 6%
ping.php in Global Console Manager 16 (GCM16) and Global Console Manager 32 (GCM32) before 1.20.0.22575 on the IBM Avocent 1754 KVM switch allows rem…
Global Console Manager 16 Firmware
after 1.18.0.22011
MEDIUM 5.0
CVE-2013-3040
IBM InfoSphere Information Server through 8.5 FP3, 8.7 through FP2, and 9.1 produces login-failure messages indicating whether the username or passwo…
Infosphere Information Server
Patch available
HIGH 10.0
CVE-2013-4031
The Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated Management Module II (IMM2) …
Bladecenter
Mitigation only
MEDIUM 5.0
CVE-2013-0494
IBM Sterling B2B Integrator 5.0 and 5.1 allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted HTTP (1) Rang…
Sterling B2b Integrator
Mitigation only
HIGH 9.3
CVE-2013-3027
Integer overflow in the DWA9W ActiveX control in iNotes in IBM Domino 9.0 before IF3 allows remote attackers to execute arbitrary code via a crafted …
Lotus Domino
Mitigation only
MEDIUM 6.0
CVE-2013-3992
Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere BigInsights 2.0 through 2.1 allows remote authenticated users to hijack the authent…
Infosphere Biginsights
Mitigation only