← Back

Ibm

ibm

8,250 CVEs • 1,572 products

Products (1,572)

Click to collapse
Toggle
Aix
aix
Db2
db2
Vios
vios
Websphere Mq
websphere_mq
Lotus Domino
lotus_domino
Api Connect
api_connect
Lotus Notes
lotus_notes
Concert
concert
I
i
Mq Appliance
mq_appliance
Mq
mq
Sametime
sametime
Aspera Faspex
aspera_faspex
Cics Tx
cics_tx
Connections
connections
Java
java
Domino
domino
Doors Next
doors_next

CVEs (8,250)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ibm
1Aix
Apr 16, 2026
Dec 10, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
AIX sysback before 4.2.1.13 uses a relative path to find and execute the hostname program, which allows local users to gain privileges by modifying the path to point to a malicious hostname program.
1Ibm
1Aix
Apr 16, 2026
Nov 14, 2000
N/A· v4
N/A· v3
2.1 LOW· v2
netstat in AIX 4.x.x does not properly restrict access to the -Zi option, which allows local users to clear network interface statistics and possibly hide evidence of unusual network activities.
1Ibm
1Websphere Application Server
Apr 16, 2026
Nov 14, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in IBM WebSphere web application server (WAS) allows remote attackers to execute arbitrary commands via a long Host: request header.
13Caldera
ConectivaDebian+10 more
16Aix
Debian LinuxImmunix+13 more
Apr 16, 2026
Nov 14, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
1Ibm
1Os2 Ftp Server
Apr 16, 2026
Oct 20, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username.
1Ibm
1Net.data
Apr 16, 2026
Oct 20, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in IBM Net.Data db2www CGI program allows remote attackers to execute arbitrary commands via a long PATH_INFO environmental variable.
1Ibm
1Websphere Application Server
Apr 16, 2026
Jul 24, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which contains the "/servlet/file" string.
1Ibm
1Aix
Apr 16, 2026
Jun 20, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
AIX cdmount allows local users to gain root privileges via shell metacharacters.
1Ibm
1Websphere Application Server
Apr 16, 2026
Jun 8, 2000
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
IBM WebSphere server 3.0.2 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.
2Apache
Ibm
2Http Server
Http Server
Apr 16, 2026
May 31, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a large number of / characters.
1Ibm
1Aix
Apr 16, 2026
May 24, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.
1Ibm
1Aix
Apr 16, 2026
Apr 26, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program.
3Hp
IbmSco
3Aix
Hp UxUnixware
Apr 16, 2026
Mar 2, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges.
1Ibm
1Aix
Apr 16, 2026
Jan 27, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in portmir for AIX 4.3.0 allows local users to corrupt lock files and gain root privileges via the echo_error routine.
1Ibm
1Aix
Apr 16, 2026
Jan 10, 2000
N/A· v4
N/A· v3
2.1 LOW· v2
AIX techlibss allows local users to overwrite files via a symlink attack.
1Ibm
1Aix
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
7.2 HIGH· v2
Unspecified vulnerability in crontab in IBM AIX 3.2 allows local users to gain root privileges via unknown attack vectors.
1Ibm
1System Data Repository
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
sdrd daemon in IBM SP2 System Data Repository (SDR) allows remote attackers to read files without authentication.
1Ibm
1Aix
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
2.1 LOW· v2
lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line parameter.
1Ibm
1Network Station Manager
Apr 16, 2026
Dec 27, 1999
N/A· v4
N/A· v3
6.2 MEDIUM· v2
IBM Network Station Manager NetStation allows local users to gain privileges via a symlink attack.
1Ibm
1Websphere Application Server
Apr 16, 2026
Dec 2, 1999
N/A· v4
N/A· v3
7.2 HIGH· v2
IBM WebSphere sets permissions that allow a local user to modify a deinstallation script or its data files stored in /usr/bin.