Vulnerability index

Browse CVEs

6,336 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2022-43844 IBM Robotic Process Automation for Cloud Pak 20.12 through 21.0.3 is vulnerable to broken access control. A user is not correctly redirected to the… Robotic Process Automation For Cloud Pak 21.0.3.1+ Fix from $1,9502023-01-05 MEDIUM 5.3 CVE-2022-43573 IBM Robotic Process Automation 20.12 through 21.0.6 is vulnerable to exposure of the name and email for the creator/modifier of platform level object… Robotic Process Automation 21.0.7+ Fix from $1,6002023-01-05 MEDIUM 6.5 CVE-2022-22371 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 does not invalidate session after a password change which could allow an authent… Sterling B2b Integrator after 6.1.1.1 Fix from $1,6002023-01-05 MEDIUM 6.1 CVE-2022-34330 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed … Sterling B2b Integrator after 6.1.1.2 Fix from $1,6002023-01-05 HIGH 8.8 CVE-2022-43920 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 could allow an authenticated user to gain privileges in a different group due to… Sterling B2b Integrator 6.0.3.7 / 6.1.0.6+ Fix from $1,9502023-01-04 CRITICAL 9.8 CVE-2022-22338 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 is vulnerable to SQL injection. A remote attacker could send specially crafted S… Sterling B2b Integrator 6.0.3.7 / 6.1.0.6+ Fix from $2,3002023-01-04 MEDIUM 6.5 CVE-2022-22337 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 could disclose sensitive information to an authenticated user. IBM X-Force ID: … Sterling B2b Integrator 6.0.3.7 / 6.1.0.6+ Fix from $1,6002023-01-04 MEDIUM 5.4 CVE-2021-38928 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry… Sterling B2b Integrator 6.0.3.7 / 6.1.0.6+ Fix from $1,6002023-01-04 MEDIUM 5.4 CVE-2022-22352 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed … Sterling B2b Integrator 6.0.3.7 / 6.1.0.6+ Fix from $1,6002023-01-04 HIGH 8.8 CVE-2022-42435 IBM Business Automation Workflow 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, and 22.0.1 is vulner… Business Automation Workflow Patch available Fix from $1,9502023-01-04 MEDIUM 5.3 CVE-2022-22449 IBM Security Verify Governance, Identity Manager 10.01 could allow a remote attacker to obtain sensitive information when a detailed technical error … Security Verify Governance Patch available Fix from $1,6002022-12-24 HIGH 8.4 CVE-2022-41290 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the rm_rlcache_file command to obtain root … Vios Patch available Fix from $1,9502022-12-23 MEDIUM 6.2 CVE-2022-39164 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service.… Vios Patch available Fix from $1,6002022-12-23 MEDIUM 6.2 CVE-2022-43848 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX perfstat kernel extension to cause … Vios Patch available Fix from $1,6002022-12-23 MEDIUM 6.2 CVE-2022-43849 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in the AIX pfcdd kernel extension to cause a de… Vios Patch available Fix from $1,6002022-12-23 MEDIUM 6.2 CVE-2022-40233 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX TCP/IP kernel extension to cause a … Vios Patch available Fix from $1,6002022-12-23 MEDIUM 6.2 CVE-2022-43380 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX NFS kernel extension to cause a den… Vios Patch available Fix from $1,6002022-12-23 MEDIUM 6.2 CVE-2022-43381 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in the AIX SMB client to cause a denial of serv… Vios Patch available Fix from $1,6002022-12-23 MEDIUM 6.2 CVE-2022-39165 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in CAA to cause a denial of service. IBM X-For… Vios Patch available Fix from $1,6002022-12-23 MEDIUM 6.5 CVE-2022-22458 IBM Security Verify Governance, Identity Manager 10.0.1 stores user credentials in plain clear text which can be read by a remote authenticated user.… Security Verify Governance Patch available Fix from $1,6002022-12-22 MEDIUM 6.1 CVE-2022-22456 IBM Security Verify Governance, Identity Manager 10.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav… Security Verify Governance Patch available Fix from $1,6002022-12-22 MEDIUM 5.3 CVE-2022-35646 IBM Security Verify Governance, Identity Manager 10.0.1 software component could allow an authenticated user to modify or cancel any other user's acc… Security Verify Governance Patch available Fix from $1,6002022-12-22 HIGH 7.5 CVE-2022-22461 IBM Security Verify Governance, Identity Manager 10.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt hi… Security Verify Governance Patch available Fix from $1,9502022-12-22 HIGH 7.5 CVE-2022-38391 IBM Spectrum Control 5.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM… Spectrum Control Patch available Fix from $1,9502022-12-20 MEDIUM 5.5 CVE-2022-43875 IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4 could allow an authenticated user to lock additional RM authorizations,… Financial Transaction Manager Patch available Fix from $1,6002022-12-20 MEDIUM 5.3 CVE-2022-43872 IBM Financial Transaction Manager 3.2.4 authorization checks are done incorrectly for some HTTP requests which allows getting unauthorized technical … Financial Transaction Manager Patch available Fix from $1,6002022-12-20 CRITICAL 9.1 CVE-2022-38708 IBM Cognos Analytics 11.1.7 11.2.0, and 11.2.1 could be vulnerable to a Server-Side Request Forgery Attack (SSRF) attack by constructing URLs from us… Cognos Analytics after 11.2.3 Fix from $2,3002022-12-19 HIGH 7.5 CVE-2022-43883 IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could be vulnerable to a Log Injection attack by constructing URLs from user-controlled data. This co… Cognos Analytics after 11.2.3 Fix from $1,9502022-12-19 MEDIUM 6.1 CVE-2022-39160 IBM Cognos Analytics 11.2.1, 11.2.0, and 11.1.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript … Cognos Analytics 11.1.7+ Fix from $1,6002022-12-19 MEDIUM 5.3 CVE-2022-43887 IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could be vulnerable to sensitive information exposure by passing API keys to log files. If these keys… Cognos Analytics 11.1.7+ Fix from $1,6002022-12-19