Vulnerability index

Browse CVEs

6,336 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 10.0 CVE-2005-4865EPSS 6% Stack-based buffer overflow in call in IBM DB2 7.x and 8.1 allows remote attackers to execute arbitrary code via a long libname. Db2 Universal Database Patch available Fix from $1,9502005-12-31 HIGH 9.3 CVE-2005-4867EPSS 5% Stack-based buffer overflow in the SATENCRYPT function in IBM DB2 8.1, when Satellite Administration (SATADMIN) is enabled, allows remote attackers t… Db2 Universal Database Patch available Fix from $1,9502005-12-31 HIGH 7.8 CVE-2005-2712 The LDAP server (nldap.exe) in IBM Lotus Domino before 7.0.1, 6.5.5, and 6.5.4 FP2 allows remote attackers to cause a denial of service (crash) via a… Lotus Domino Patch available Fix from $1,9502005-12-31 HIGH 7.5 CVE-2005-4737 IBM DB2 Universal Database (UDB) 820 before ESE AIX 5765F4100 allows remote authenticated users to cause a denial of service (CPU consumption) by "ab… Db2 Universal Database Patch available Fix from $1,9502005-12-31 HIGH 7.2 CVE-2005-4863 Stack-based buffer overflow in db2fmp in IBM DB2 7.x and 8.1 allows local users to execute arbitrary code via a long parameter. Db2 Universal Database Patch available Fix from $1,9502005-12-31 HIGH 7.2 CVE-2005-4864 Stack-based buffer overflow in libdb2.so in IBM DB2 7.x and 8.1 allows local users to execute arbitrary code via a long DB2LPORT environment variable. Db2 Universal Database Patch available Fix from $1,9502005-12-31 HIGH 7.1 CVE-2005-4868 Shared memory sections and events in IBM DB2 8.1 have default permissions of read and write for the Everyone group, which allows local users to gain … Db2 Universal Database Patch available Fix from $1,9502005-12-31 MEDIUM 6.8 CVE-2005-4735 IBM DB2 Universal Database (UDB) 810 before 8.1 FP10 allows remote authenticated users to cause a denial of service (application crash) via (1) certa… Db2 Universal Database Patch available Fix from $1,6002005-12-31 MEDIUM 6.8 CVE-2005-4736 IBM DB2 Universal Database (UDB) 820 before 8.2 FP10 allows remote authenticated users to cause a denial of service (disk consumption) via a hash joi… Db2 Universal Database Patch available Fix from $1,6002005-12-31 MEDIUM 6.8 CVE-2005-4739 IBM DB2 Universal Database (UDB) 820 before version 8 FixPak 10 (s050811) allows remote authenticated users to cause a denial of service (application… Db2 Universal Database Patch available Fix from $1,6002005-12-31 MEDIUM 6.8 CVE-2005-4819 Cross-site scripting (XSS) vulnerability in Lotus Domino versions before 6.5.4 fix pack 1 (FP1) and versions before 7.0 allows remote attackers to in… Lotus Domino Patch available Fix from $1,6002005-12-31 MEDIUM 6.8 CVE-2005-4866 Stack-based buffer overflow in JDBC Applet Server in IBM DB2 8.1 allows remote attackers to execute arbitrary by connecting and sending a long userna… Db2 Universal Database Patch available Fix from $1,6002005-12-31 MEDIUM 6.5 CVE-2005-4738 IBM DB2 Universal Database (UDB) 810 before ESE AIX 5765F4100 does not ensure that a user has execute privileges before permitting object creation ba… Db2 Universal Database Patch available Fix from $1,6002005-12-31 MEDIUM 5.0 CVE-2005-4834 IBM WebSphere Application Server (WAS) 5.0.2.5 through 5.1.1.3 allows remote attackers to obtain JSP source code and other sensitive information, rel… Websphere Application Server Patch available Fix from $1,6002005-12-31 HIGH 10.0 CVE-2005-4272EPSS 9% Multiple buffer overflows in IBM AIX 5.1, 5.2, and 5.3 allow remote attackers to execute arbitrary code via (1) muxatmd and (2) slocal. Aix Patch available Fix from $1,9502005-12-15 HIGH 7.2 CVE-2005-4271 Buffer overflow in the malloc debug system in IBM AIX 5.3 allows local users to execute arbitrary code. Aix Patch available Fix from $1,9502005-12-15 HIGH 7.2 CVE-2005-4068 Unspecified "absolute path vulnerability" in umountall in IBM AIX 5.1 through 5.3 allows local users to cause unknown impact via unknown vectors. Aix Patch available Fix from $1,9502005-12-08 HIGH 7.8 CVE-2005-3760 Double free vulnerability in the BBOORB module in IBM WebSphere Application Server for z/OS 5.0 allows attackers to cause a denial of service (ABEND). Websphere Application Server Patch available Fix from $1,9502005-11-22 HIGH 7.2 CVE-2005-3749 Unspecified "absolute path vulnerabilities" in the diagela command (diagela.sh) in IBM AIX 5.2 and 5.3 have unknown impact and attack vectors. Aix Patch available Fix from $1,9502005-11-22 HIGH 7.5 CVE-2005-3642 IBM Informix Dynamic Database server running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication and log… Informix Dynamic Database Server Mitigation only Fix from $1,9502005-11-16 HIGH 7.5 CVE-2005-3643 IBM DB2 Database server running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication and log on to the gu… Db2 Universal Database Mitigation only Fix from $1,9502005-11-16 MEDIUM 5.8 CVE-2005-3567 slapd daemon in IBM Tivoli Directory Server (ITDS) 5.2.0 and 6.0.0 binds using SASL EXTERNAL, which allows attackers to bypass authentication and mod… Tivoli Directory Server Patch available Fix from $1,6002005-11-16 MEDIUM 5.0 CVE-2005-3569 INSO service in IBM DB2 Content Manager before 8.2 Fix Pack 10 on AIX allows attackers to cause a denial of service (application crash) via unknown a… Db2 Content Manager Mitigation only Fix from $1,6002005-11-16 HIGH 7.5 CVE-2005-3504 Buffer overflow in swcons in IBM AIX 5.2, when debug malloc is enabled, allows remote attackers to cause a core dump and possibly execute arbitrary c… Aix Patch available Fix from $1,9502005-11-05 HIGH 7.5 CVE-2005-3396 Buffer overflow in the chcons (chcon) command in IBM AIX 5.2 and 5.3, when DEBUG MALLOC is enabled, might allow attackers to execute arbitrary code v… Aix Patch available Fix from $1,9502005-11-01 HIGH 7.2 CVE-2005-3060 Buffer overflow in getconf in IBM AIX 5.2 to 5.3 allows local users to execute arbitrary code via unknown vectors. Aix Patch available Fix from $1,9502005-09-30 MEDIUM 6.8 CVE-2005-2994 Unspecified vulnerability in the web client for IBM Rational ClearQuest 2002.05.00 and 2002.05.20, and 2003.06.00 through 2003.06.15 before SR5, allo… Rational Clearquest Mitigation only Fix from $1,6002005-09-20 MEDIUM 5.0 CVE-2005-2696 IBM Lotus Notes does not properly restrict access to password hashes in the Notes Address Book (NAB), which allows remote attackers to obtain sensiti… Lotus Notes No fix yet Fix from $1,6002005-08-26 MEDIUM 5.0 CVE-2005-2428EPSS 73% Lotus Domino R5 and R6 WebMail, with "Generate HTML for all fields" enabled, stores sensitive data from names.nsf in hidden form fields, which allows… Lotus Domino No fix yet Fix from $1,6002005-08-03 HIGH 7.2 CVE-2005-2233 Buffer overflow in multiple "p" commands in IBM AIX 5.1, 5.2 and 5.3 might allow local users to execute arbitrary code via long command line argument… Aix Patch available Fix from $1,9502005-07-12