Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Ibm Subscribe
Total 6536 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-1061 1 Ibm 1 Aix 2008-09-05 10.0 HIGH N/A
Vulnerability in lsmcode in unknown versions of AIX, possibly related to a usage error.
CVE-2001-1143 1 Ibm 1 Db2 Universal Database 2008-09-05 5.0 MEDIUM N/A
IBM DB2 7.0 allows a remote attacker to cause a denial of service (crash) via a single byte to (1) db2ccs.exe on port 6790, or (2) db2jds.exe on port 6789.
CVE-2001-1189 1 Ibm 1 Websphere Application Server 2008-09-05 4.6 MEDIUM N/A
IBM Websphere Application Server 3.5.3 and earlier stores a password in cleartext in the sas.server.props file, which allows local users to obtain the passwords via a JSP script.
CVE-2001-1191 1 Ibm 1 Tivoli Secureway Policy Director 2008-09-05 5.0 MEDIUM N/A
WebSeal in IBM Tivoli SecureWay Policy Director 3.8 allows remote attackers to cause a denial of service (crash) via a URL that ends in %2e.
CVE-2001-0671 1 Ibm 1 Aix 2008-09-05 10.0 HIGH N/A
Buffer overflows in (1) send_status, (2) kill_print, and (3) chk_fhost in lpd in AIX 4.3 and 5.1 allow remote attackers to gain root privileges.
CVE-2001-0312 1 Ibm 1 Websphere Plugin 2008-09-05 5.0 MEDIUM N/A
IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebSphere's host aliases list, which will bypass WebSphere processing.
CVE-2001-0389 1 Ibm 2 Net.commerce, Websphere Application Server 2008-09-05 5.0 MEDIUM N/A
IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to determine the real path of the server by directly calling the macro.d2w macro with a NOEXISTINGHTMLBLOCK argument.
CVE-2001-0390 1 Ibm 3 Net.commerce, Net.commerce Hosting Server, Websphere Application Server 2008-09-05 5.0 MEDIUM N/A
IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to cause a denial of service by directly calling the macro.d2w macro with a long string of %0a characters.
CVE-2000-1110 1 Ibm 1 Net.data 2008-09-05 5.0 MEDIUM N/A
document.d2w CGI program in the IBM Net.Data db2www package allows remote attackers to determine the physical path of the web server by sending a nonexistent command to the program.
CVE-2000-0466 1 Ibm 1 Aix 2008-09-05 7.2 HIGH N/A
AIX cdmount allows local users to gain root privileges via shell metacharacters.
CVE-2000-0761 1 Ibm 1 Os2 Ftp Server 2008-09-05 5.0 MEDIUM N/A
OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username.
CVE-1999-1480 1 Ibm 1 Aix 2008-09-05 1.2 LOW N/A
(1) acledit and (2) aclput in AIX 4.3 allow local users to create or modify files via a symlink attack.
CVE-1999-1487 1 Ibm 1 Aix 2008-09-05 7.2 HIGH N/A
Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system.
CVE-1999-1488 1 Ibm 1 System Data Repository 2008-09-05 5.0 MEDIUM N/A
sdrd daemon in IBM SP2 System Data Repository (SDR) allows remote attackers to read files without authentication.
CVE-1999-0088 1 Ibm 1 Aix 2008-09-05 10.0 HIGH N/A
IRIX and AIX automountd services (autofsd) allow remote users to execute root commands.
CVE-1999-1589 1 Ibm 1 Aix 2008-09-04 7.2 HIGH N/A
Unspecified vulnerability in crontab in IBM AIX 3.2 allows local users to gain root privileges via unknown attack vectors.