Skip to main content

Vendor/product archive

ibm / webmethods_integration CVEs

Beta · best-effort

8 CVEs tagged to ibm / webmethods_integration1 Critical, 5 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2025-36072

Published Nov 20, 2025

IBM webMethods Integration 10.11 through 10.11_Core_Fix22, 10.15 through 10.15_Core_Fix22, and 11.1 through 11.1_Core_Fix6 IBM webMethods Integration allow an authenticated user t…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-36202

Published Sep 22, 2025

IBM webMethods Integration 10.15 and 11.1 could allow an authenticated user with required execute Services to execute commands on the system due to the improper validation of form…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-36037

Published Sep 22, 2025

IBM webMethods Integration 10.15 and 11.1 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the sy…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-45076

Published Sep 4, 2024

IBM webMethods Integration 10.15 could allow an authenticated user to upload and execute arbitrary files which could be executed on the underlying operating system.

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-45075

Published Sep 4, 2024

IBM webMethods Integration 10.15 could allow an authenticated user to create scheduler tasks that would allow them to escalate their privileges to administrator due to missing aut…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-45074

Published Sep 4, 2024

IBM webMethods Integration 10.15 could allow an authenticated user to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot do…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1