Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Total 7009 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-0824 1 Ibm 1 Websphere Application Server 2008-09-10 7.5 HIGH N/A
Cross-site scripting vulnerability in IBM WebSphere 3.02 and 3.5 FP2 allows remote attackers to execute Javascript by inserting the Javascript into (1) a request for a .JSP file, or (2) a request to the webapp/examples/ directory, which inserts the Javascript into an error page.
CVE-2001-0487 1 Ibm 1 Aix Snmp 2008-09-10 5.0 MEDIUM N/A
AIX SNMP server snmpd allows remote attackers to cause a denial of service via a RST during the TCP connection.
CVE-2000-0441 1 Ibm 1 Aix 2008-09-10 5.0 MEDIUM N/A
Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.
CVE-2000-0249 1 Ibm 1 Aix 2008-09-10 7.2 HIGH N/A
The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program.
CVE-2000-0027 1 Ibm 1 Network Station Manager 2008-09-10 6.2 MEDIUM N/A
IBM Network Station Manager NetStation allows local users to gain privileges via a symlink attack.
CVE-1999-1552 1 Ibm 1 Aix 2008-09-10 7.2 HIGH N/A
dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary files and gain privileges.
CVE-1999-1404 1 Ibm 1 Tivoli Opc Tracker Agent 2008-09-10 5.0 MEDIUM N/A
IBM/Tivoli OPC Tracker Agent version 2 release 1 allows remote attackers to cause a denial of service (resource exhaustion) via malformed data to the localtracker client port (5011), which prevents the connection from being closed properly.
CVE-1999-1403 1 Ibm 1 Tivoli Opc Tracker Agent 2008-09-10 7.2 HIGH N/A
IBM/Tivoli OPC Tracker Agent version 2 release 1 creates files, directories, and IPC message queues with insecure permissions (world-readable and world-writable), which could allow local users to disrupt operations and possibly gain privileges by modifying or deleting files.
CVE-1999-0852 1 Ibm 1 Websphere Application Server 2008-09-09 7.2 HIGH N/A
IBM WebSphere sets permissions that allow a local user to modify a deinstallation script or its data files stored in /usr/bin.
CVE-1999-0789 1 Ibm 1 Aix 2008-09-09 10.0 HIGH N/A
Buffer overflow in AIX ftpd in the libc library.
CVE-1999-0745 1 Ibm 1 Aix 2008-09-09 10.0 HIGH N/A
Buffer overflow in Source Code Browser Program Database Name Server Daemon (pdnsd) for the IBM AIX C Set ++ compiler.
CVE-1999-0729 1 Ibm 1 Lotus Domino Server 2008-09-09 5.0 MEDIUM N/A
Buffer overflow in Lotus Notes LDAP (NLDAP) allows an attacker to conduct a denial of service through the ldap_search request.
CVE-1999-0694 1 Ibm 1 Aix 2008-09-09 2.1 LOW N/A
Denial of service in AIX ptrace system call allows local users to crash the system.
CVE-1999-0131 8 Bsdi, Digital, Eric Allman and 5 more 9 Bsd Os, Osf 1, Sendmail and 6 more 2008-09-09 7.2 HIGH N/A
Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.
CVE-1999-0130 7 Bsdi, Caldera, Eric Allman and 4 more 7 Bsd Os, Network Desktop, Sendmail and 4 more 2008-09-09 7.2 HIGH N/A
Local users can start Sendmail in daemon mode and gain root privileges.
CVE-1999-0116 1 Ibm 2 Aix, Sng 2008-09-09 5.0 MEDIUM N/A
Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood.
CVE-1999-0115 1 Ibm 1 Aix 2008-09-09 7.2 HIGH N/A
AIX bugfiler program allows local users to gain root access.
CVE-1999-0101 1 Ibm 1 Aix 2008-09-09 10.0 HIGH N/A
Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.
CVE-1999-0087 1 Ibm 1 Aix 2008-09-09 5.0 MEDIUM N/A
Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.
CVE-1999-0057 5 Eric Allman, Freebsd, Hp and 2 more 7 Vacation, Freebsd, Hp-ux and 4 more 2008-09-09 7.5 HIGH N/A
Vacation program allows command execution by remote users through a sendmail command.