Skip to main content

Vendor/product archive

ibm / sdk CVEs

Beta · best-effort

6 CVEs tagged to ibm / sdk0 Critical, 4 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2022-40609

Published Aug 2, 2023

IBM SDK, Java Technology Edition 7.1.5.18 and 8.0.8.0 could allow a remote attacker to execute arbitrary code on the system, caused by an unsafe deserialization flaw. By sending s…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2018-1890

Published Mar 11, 2019

IBM SDK, Java Technology Edition Version 8 on the AIX platform uses absolute RPATHs which may facilitate code injection and privilege elevation by local users. IBM X-Force ID: 152…

CVSS 5.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-1289

Published May 22, 2017

IBM SDK, Java Technology Edition is vulnerable XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose hig…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2016-3956

Published Jul 2, 2016

The CLI in npm before 2.15.1 and 3.x before 3.8.3, as used in Node.js 0.10 before 0.10.44, 0.12 before 0.12.13, 4 before 4.4.2, and 5 before 5.10.0, includes bearer tokens with ar…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1