Skip to main content

Vendor archive

ibm CVEs

Beta · best-effort

8,273 CVEs tagged to vendor ibm591 Critical, 1,750 High, 5,187 Medium, 745 Low, 0 Unrated.

CVE-2006-0666

Published Feb 15, 2006

Unspecified vulnerability in the (1) unix_mp and (2) unix_64 kernels in IBM AIX 5.3 VRMF 5.3.0.30 through 5.3.0.33 allows local users to cause a denial of service (system crash) v…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0717

Published Feb 15, 2006

IBM Tivoli Directory Server 6.0 allows remote attackers to cause a denial of service (crash) via a crafted LDAP request, as demonstrated by test 2532 in the ProtoVer Sample LDAP t…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0674

Published Feb 13, 2006

Buffer overflow in the arp command of IBM AIX 5.3 L, 5.3, 5.2.2, 5.2 L, and 5.2 allows local users to cause a denial of service (crash) via a long iftype argument.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0662

Published Feb 13, 2006

Cross-site scripting (XSS) vulnerability in Lotus Domino iNotes Client 6.5.4 allows remote attackers to inject arbitrary web script or HTML via email with attached html files, whi…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0663

Published Feb 13, 2006

Multiple cross-site scripting (XSS) vulnerabilities in Lotus Domino iNotes Client 6.5.4 and 7.0 allow remote attackers to inject arbitrary web script or HTML via (1) an email subj…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0580

Published Feb 8, 2006

IBM Lotus Domino Server 7.0 allows remote attackers to cause a denial of service (segmentation fault) via a crafted packet to the LDAP port (389/TCP).

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0513

Published Feb 6, 2006

Directory traversal vulnerability in pkmslogout in Tivoli Web Server Plug-in 5.1.0.10 in Tivoli Access Manager (TAM) 5.1 allows remote attackers to read arbitrary files via a .. (…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0133

Published Jan 9, 2006

Multiple directory traversal vulnerabilities in AIX 5.3 ML03 allow local users to determine the existence of files and read partial contents of certain files via a .. (dot dot) in…

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2454

Published Dec 31, 2005

IBM Lotus Notes 6.5.4 and 6.5.5, and 7.0.0 and 7.0.1, uses insecure default permissions (Everyone/Full Control) for the "Notes" folder and all children, which allows local users t…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2712

Published Dec 31, 2005

The LDAP server (nldap.exe) in IBM Lotus Domino before 7.0.1, 6.5.5, and 6.5.4 FP2 allows remote attackers to cause a denial of service (crash) via a long bind request, which trig…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2005-4735

Published Dec 31, 2005

IBM DB2 Universal Database (UDB) 810 before 8.1 FP10 allows remote authenticated users to cause a denial of service (application crash) via (1) certain equality predicates that tr…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4736

Published Dec 31, 2005

IBM DB2 Universal Database (UDB) 820 before 8.2 FP10 allows remote authenticated users to cause a denial of service (disk consumption) via a hash join (hsjn) that triggers an infi…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4737

Published Dec 31, 2005

IBM DB2 Universal Database (UDB) 820 before ESE AIX 5765F4100 allows remote authenticated users to cause a denial of service (CPU consumption) by "abnormally" terminating a connec…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-4738

Published Dec 31, 2005

IBM DB2 Universal Database (UDB) 810 before ESE AIX 5765F4100 does not ensure that a user has execute privileges before permitting object creation based on routines, which allows…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4739

Published Dec 31, 2005

IBM DB2 Universal Database (UDB) 820 before version 8 FixPak 10 (s050811) allows remote authenticated users to cause a denial of service (application crash) by using a table funct…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4740

Published Dec 31, 2005

IBM DB2 Universal Database (UDB) 810 before version 8 FixPak 10 allows remote authenticated users to cause a denial of service (db2jd service crash) by "connecting from a downleve…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4819

Published Dec 31, 2005

Cross-site scripting (XSS) vulnerability in Lotus Domino versions before 6.5.4 fix pack 1 (FP1) and versions before 7.0 allows remote attackers to inject arbitrary web script or H…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4833

Published Dec 31, 2005

IBM WebSphere Application Server (WAS) 6.0 before 20050201, when serving pages in an Application WAR or an Extended Document Root, allows remote attackers to obtain the JSP source…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 7,951-7,975 of 8,273 CVEsPage 319 of 331