Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2006-6309
Multiple array index errors in IBM Tivoli Storage Manager (TSM) before 5.2.9 and 5.3.x before 5.3.4 allow remote attackers to read arbitrary memory l…
Tivoli Storage Manager
after 5.2.9
HIGH 10.0
CVE-2006-5855EPSS 27%
Multiple buffer overflows in IBM Tivoli Storage Manager (TSM) before 5.2.9 and 5.3.x before 5.3.4 allow remote attackers to cause a denial of service…
Tivoli Storage Manager
Patch available
HIGH 10.0
CVE-2006-6135
Multiple unspecified vulnerabilities in IBM WebSphere Application Server 6.1.0 before Fix Pack 3 (6.1.0.3) have unknown impact and attack vectors, re…
Websphere Application Server
Patch available
HIGH 10.0
CVE-2006-6136
IBM WebSphere Application Server 6.1.0 before Fix Pack 3 (6.1.0.3) does not perform EAL4 authentication checks at the proper time during "registering…
Websphere Application Server
Patch available
MEDIUM 5.0
CVE-2006-5835EPSS 13%
The Notes Remote Procedure Call (NRPC) protocol in IBM Lotus Notes Domino before 6.5.5 FP2 and 7.x before 7.0.2 does not require authentication to pe…
Lotus Notes
Patch available
HIGH 7.2
CVE-2006-5818
Multiple buffer overflows in tunekrnl in IBM Lotus Domino 6.x before 6.5.5 FP2 and 7.x before 7.0.2 allow local users to gain privileges and execute …
Lotus Domino
after 7.0.1
HIGH 10.0
CVE-2006-5323
Unspecified vulnerability in IBM WebSphere Application Server before 6.1.0.2 has unspecified impact and attack vectors, related to a "possible securi…
Websphere Application Server
after 6.1.0.1
HIGH 7.5
CVE-2006-5324
The Web Services Notification (WSN) security component of IBM WebSphere Application Server before 6.1.0.2 allows attackers to obtain unspecified acce…
Websphere Application Server
after 6.1.0.1
MEDIUM 6.4
CVE-2006-5161
IBM Client Security Password Manager stores and distributes saved passwords based upon the title of a website, which allows remote attackers to obtai…
Client Security Password Manager
Mitigation only
HIGH 10.0
CVE-2006-5008
Unspecified vulnerability in utape in IBM AIX 5.2.0 and 5.3.0 allows attackers to execute arbitrary commands and overwrite arbitrary files via unspec…
Aix
Patch available
HIGH 7.2
CVE-2006-5003
Unspecified vulnerability in the named8 command in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors.
Aix
Patch available
HIGH 7.2
CVE-2006-5005
Unspecified vulnerability in bos.net.tcp.client in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors i…
Aix
Patch available
HIGH 7.2
CVE-2006-5006
Buffer overflow in cfgmgr in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary code via a long directory path argument.
Aix
Patch available
HIGH 7.2
CVE-2006-5009
Unspecified vulnerability in xlock in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands and overwrite arbitrary files via unsp…
Aix
Patch available
HIGH 7.2
CVE-2006-5010
Untrusted search path vulnerability in acctctl in IBM AIX 5.3.0 allows local users to execute arbitrary commands by modifying the path to point to a …
Aix
Patch available
HIGH 7.2
CVE-2006-5011
Untrusted search path vulnerability in snappd in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via a Trojan horse program,…
Aix
Patch available
MEDIUM 5.0
CVE-2006-5002
Unspecified vulnerability in IBM Inventory Scout for AIX 2.2.0.0 through 2.2.0.9 (invscoutClient_VPD_Survey) allows attackers to overwrite arbitrary …
Inventory Scout
Patch available
HIGH 7.5
CVE-2006-4763
IBM Lotus Domino Web Access (DWA) 7.0.1 does not expire a client's Lightweight Third-Party Authentication token (LtpaToken) upon logout, which allows…
Lotus Domino Web Access
Mitigation only
MEDIUM 5.0
CVE-2006-4681
Directory traversal vulnerability in Redirect.bat in IBM Director before 5.10 allows remote attackers to read arbitrary files via a .. (dot dot) sequ…
Director
after 3.1
MEDIUM 5.0
CVE-2006-4682
Multiple unspecified vulnerabilities in IBM Director before 5.10 allow remote attackers to cause a denial of service (crash) via unspecified vectors …
Director
after 3.1
MEDIUM 5.0
CVE-2006-4683
IBM Director before 5.10 allows remote attackers to obtain sensitive information from HTTP headers via HTTP TRACE.
Director
after 3.1
HIGH 7.2
CVE-2006-4522
Unspecified vulnerability in dtterm in IBM AIX 5.2 and 5.3 allows local users to execute arbitrary code with root privileges via unspecified vectors.
Aix
No fix yet
HIGH 7.2
CVE-2006-4416
Untrusted search path vulnerability in the mkvg command in IBM AIX 5.2 and 5.3 allows local users to gain privileges by modifying the path to point t…
Aix
Mitigation only
HIGH 7.5
CVE-2006-4254EPSS 8%
Unspecified vulnerability in setlocale in IBM AIX 5.1.0 through 5.3.0 allows local users to gain privileges via unspecified vectors.
Aix
Patch available
HIGH 9.3
CVE-2006-4221EPSS 9%
Stack-based buffer overflow in the IBM Access Support eGatherer ActiveX control before 3.20.0284.0 allows remote attackers to execute arbitrary code …
Egatherer
Patch available
MEDIUM 5.0
CVE-2006-4222
Multiple unspecified vulnerabilities in IBM WebSphere Application Server before 6.0.2.13 have unspecified vectors and impact, including (1) an "autho…
Websphere Application Server
after 6.0.2.11
MEDIUM 5.0
CVE-2006-4223
IBM WebSphere Application Server (WAS) before 6.0.2.13 allows context-dependent attackers to obtain sensitive information via unspecified vectors rel…
Websphere Application Server
after 6.0.2.11
HIGH 7.5
CVE-2006-3854
Buffer overflow in IBM Informix Dynamic Server (IDS) 9.40.TC7, 9.40.TC8, 10.00.TC4, and 10.00.TC5, when running on Windows, allows remote attackers t…
Informix Dynamic Database Server
No fix yet
HIGH 7.5
CVE-2006-3860
IBM Informix Dynamic Server (IDS) before 9.40.xC7 and 10.00 before 10.00.xC3 allows allows remote authenticated users to execute arbitrary commands v…
Informix Dynamic Database Server
Mitigation only
HIGH 7.5
CVE-2006-4136
Multiple unspecified vulnerabilities in IBM WebSphere Application Server before 6.1.0.1 have unspecified impact and attack vectors involving (1) "SOA…
Websphere Application Server
after 6.1.0.0