← Back

Ibm

ibm

8,250 CVEs • 1,572 products

Products (1,572)

Click to collapse
Toggle
Aix
aix
Db2
db2
Vios
vios
Websphere Mq
websphere_mq
Lotus Domino
lotus_domino
Api Connect
api_connect
Lotus Notes
lotus_notes
Concert
concert
I
i
Mq Appliance
mq_appliance
Mq
mq
Sametime
sametime
Aspera Faspex
aspera_faspex
Cics Tx
cics_tx
Connections
connections
Java
java
Domino
domino
Doors Next
doors_next

CVEs (8,250)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ibm
1Aix
Apr 16, 2026
Jun 11, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument.
1Ibm
1Websphere Plugin
Apr 16, 2026
Jun 2, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebSphere's host aliases...Show more
IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebSphere's host aliases list, which will bypass WebSphere processing.Show less
1Ibm
3Net.commerce
Net.commerce Hosting ServerWebsphere Commerce Suite
Apr 16, 2026
May 3, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
orderdspc.d2w macro in IBM Net.Commerce 3.x allows remote attackers to execute arbitrary SQL queries by inserting them into the order_rn option of the report capability.
1Ibm
2Http Server
Websphere Application Server
Apr 16, 2026
Mar 13, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Kernel leak in AfpaCache module of the Fast Response Cache Accelerator (FRCA) component of IBM HTTP Server 1.3.x and Websphere 3.52 allows remote attackers to cause a denial of service via a series of malformed HTTP requ...Show more
Kernel leak in AfpaCache module of the Fast Response Cache Accelerator (FRCA) component of IBM HTTP Server 1.3.x and Websphere 3.52 allows remote attackers to cause a denial of service via a series of malformed HTTP requests that generate a "bad request" error.Show less
1Ibm
1Lotus Domino Server
Apr 16, 2026
Mar 12, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in Lotus Notes LDAP (NLDAP) allows an attacker to conduct a denial of service through the ldap_search request.
1Ibm
1Gina
Apr 16, 2026
Mar 12, 2001
N/A· v4
N/A· v3
6.2 MEDIUM· v2
IBM GINA, when used for OS/2 domain authentication of Windows NT users, allows local users to gain administrator privileges by changing the GroupMapping registry key.
1Ibm
1Db2 Universal Database
Apr 16, 2026
Feb 16, 2001
N/A· v4
N/A· v3
2.1 LOW· v2
IBM DB2 Universal Database version 6.1 allows users to cause a denial of service via a malformed query.
1Ibm
1Db2 Universal Database
Apr 16, 2026
Feb 16, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
IBM DB2 Universal Database version 6.1 creates an account with a default user name and password, which allows remote attackers to gain access to the database.
1Ibm
1Http Server
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
IBM HTTP Server 1.3.6 (based on Apache) allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request.
1Ibm
1Lotus Notes
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Lotus Notes R5 client R5.0.5 and earlier does not properly warn users when an S/MIME email message has been modified, which could allow an attacker to modify the email in transit without being detected.
1Ibm
1Aix
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in piobe command in IBM AIX 4.3.x allows local users to gain privileges via long environmental variables.
1Ibm
1Aix
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in pioout command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands.
1Ibm
1Aix
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long argument.
1Ibm
1Aix
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in enq command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long -M argument.
1Ibm
1Aix
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in digest command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands.
1Ibm
1Aix
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Buffer overflow in setsenv command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands via a long "x=" argument.
1Ibm
1Lotus Notes
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The Extended Control List (ECL) feature of the Java Virtual Machine (JVM) in Lotus Notes Client R5 allows malicious web site operators to determine the existence of files on the client by measuring delays in the executio...Show more
The Extended Control List (ECL) feature of the Java Virtual Machine (JVM) in Lotus Notes Client R5 allows malicious web site operators to determine the existence of files on the client by measuring delays in the execution of the getSystemResource method.Show less
1Ibm
1Net.data
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
document.d2w CGI program in the IBM Net.Data db2www package allows remote attackers to determine the physical path of the web server by sending a nonexistent command to the program.
1Ibm
1Tivoli Management Framework
Apr 16, 2026
Dec 31, 2000
N/A· v4
N/A· v3
9.0 HIGH· v2
The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Ti...Show more
The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files.Show less
1Ibm
1As400 Firewall
Apr 16, 2026
Dec 11, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The web administration interface for IBM AS/400 Firewall allows remote attackers to cause a denial of service via an empty GET request.