Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Total 7122 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-1117 1 Ibm 1 Aix 2024-02-28 2.1 LOW N/A
lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line parameter.
CVE-1999-1208 1 Ibm 1 Aix 2024-02-28 7.2 HIGH N/A
Buffer overflow in ping in AIX 4.2 and earlier allows local users to gain root privileges via a long command line argument.
CVE-2000-0497 1 Ibm 1 Websphere Application Server 2024-02-28 5.0 MEDIUM 7.5 HIGH
IBM WebSphere server 3.0.2 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.
CVE-2004-0029 1 Ibm 1 Lotus Domino 2024-02-28 4.6 MEDIUM N/A
Lotus Notes Domino 6.0.2 on Linux installs the notes.ini configuration file with world-writable permissions, which allows local users to modify the Notes configuration and gain privileges.
CVE-2001-1567 1 Ibm 2 Lotus Domino, Lotus Domino Server 2024-02-28 5.0 MEDIUM N/A
Lotus Domino server 5.0.9a and earlier allows remote attackers to bypass security restrictions and view Notes database files and possibly sensitive Notes template files (.ntf) via an HTTP request with a large number of "+" characters before the .nsf file extension, which are converted to spaces by Domino.
CVE-2001-0533 1 Ibm 1 Aix 2024-02-28 7.2 HIGH N/A
Buffer overflow in libi18n library in IBM AIX 5.1 and 4.3.x allows local users to gain root privileges via a long LANG environmental variable.
CVE-2000-0027 1 Ibm 1 Network Station Manager 2024-02-28 6.2 MEDIUM N/A
IBM Network Station Manager NetStation allows local users to gain privileges via a symlink attack.
CVE-1999-0627 1 Ibm 1 Aix 2024-02-28 N/A N/A
The rexd service is running, which uses weak authentication that can allow an attacker to execute commands.
CVE-1999-0094 1 Ibm 1 Aix 2024-02-28 4.6 MEDIUM N/A
AIX piodmgrsu command allows local users to gain additional group privileges.
CVE-2003-0914 9 Compaq, Freebsd, Hp and 6 more 10 Tru64, Freebsd, Hp-ux and 7 more 2024-02-28 4.3 MEDIUM N/A
ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value.
CVE-1999-1121 1 Ibm 1 Aix 2024-02-28 7.2 HIGH N/A
The default configuration for UUCP in AIX before 3.2 allows local users to gain root privileges.
CVE-2003-0257 1 Ibm 1 Aix 2024-02-28 7.2 HIGH N/A
Format string vulnerability in the printer capability for IBM AIX .3, 5.1, and 5.2 allows local users to gain printq or root privileges.
CVE-2001-0856 1 Ibm 1 4758 2024-02-28 4.6 MEDIUM N/A
Common Cryptographic Architecture (CCA) in IBM 4758 allows an attacker with physical access to the system and Combine_Key_Parts permissions, to steal DES and 3DES keys by using a brute force attack to create a 3DES exporter key.
CVE-2002-2025 1 Ibm 1 Lotus Domino Server 2024-02-28 5.0 MEDIUM N/A
Lotus Domino server 5.0.9a and earlier allows remote attackers to cause a denial of service by exhausting the number of working threads via a large number of HTTP requests for (1) an MS-DOS device name and (2) an MS-DOS device name with a large number of characters appended to the device name.
CVE-2004-1330 1 Ibm 1 Aix 2024-02-28 7.2 HIGH N/A
Buffer overflow in paginit in AIX 5.1 through 5.3 allows local users to execute arbitrary code via a long username.
CVE-2002-1450 1 Ibm 1 U2 Universe 2024-02-28 5.0 MEDIUM N/A
IBM UniVerse with UV/ODBC allows attackers to cause a denial of service (client crash or server CPU consumption) via a query with an invalid link between tables, possibly via a buffer overflow.
CVE-1999-0003 5 Hp, Ibm, Sgi and 2 more 6 Hp-ux, Aix, Irix and 3 more 2024-02-28 10.0 HIGH N/A
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
CVE-2001-0998 1 Ibm 2 Aix, Hacmp 2024-02-28 5.0 MEDIUM N/A
IBM HACMP 4.4 allows remote attackers to cause a denial of service via a completed TCP connection to HACMP ports (e.g., using a port scan) that does not send additional data, which causes a failure in snmpd.
CVE-2002-1167 1 Ibm 1 Websphere Caching Proxy Server 2024-02-28 6.8 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in IBM Web Traffic Express Caching Proxy Server 3.6 and 4.x before 4.0.1.26 allows remote attackers to execute script as other users via an HTTP GET request.
CVE-1999-0117 1 Ibm 1 Aix 2024-02-28 7.2 HIGH N/A
AIX passwd allows local users to gain root access.