Vulnerabilities > IBM > AIX

DATE CVE VULNERABILITY TITLE RISK
2018-02-13 CVE-2018-1383 Unspecified vulnerability in IBM AIX
A software logic bug creates a vulnerability in an AIX 6.1, 7.1, and 7.2 daemon which could allow a user with root privileges on one system, to obtain root access on another machine.
network
low complexity
ibm
critical
9.1
2018-02-07 CVE-2017-1692 Unspecified vulnerability in IBM AIX
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges.
local
low complexity
ibm
7.8
2017-10-04 CVE-2017-1541 Improper Input Validation vulnerability in IBM AIX
A flaw in the AIX 5.3, 6.1, 7.1, and 7.2 JRE/SDK installp and updatep packages prevented the java.security, java.policy and javaws.policy files from being updated correctly.
network
low complexity
ibm CWE-20
7.3
2017-02-15 CVE-2016-8972 Permissions, Privileges, and Access Controls vulnerability in IBM AIX and Vios
IBM AIX 6.1, 7.1, and 7.2 could allow a local user to gain root privileges using a specially crafted command within the bellmail client.
local
low complexity
ibm CWE-264
7.8
2017-02-15 CVE-2016-8944 Improper Input Validation vulnerability in IBM AIX 7.1/7.2
IBM AIX 7.1 and 7.2 allows a local user to open a file with a specially crafted argument that would crash the system.
local
low complexity
ibm CWE-20
5.5
2017-02-15 CVE-2016-6079 Permissions, Privileges, and Access Controls vulnerability in IBM AIX and Vios
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges.
local
low complexity
ibm CWE-264
7.8
2017-02-02 CVE-2017-1093 Unspecified vulnerability in IBM AIX 6.1/7.1/7.2
IBM AIX 6.1, 7.1, and 7.2 could allow a local user to exploit a vulnerability in the bellmail binary to gain root privileges.
local
low complexity
ibm
7.8
2017-02-01 CVE-2016-3053 Permissions, Privileges, and Access Controls vulnerability in IBM AIX
IBM AIX contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges.
local
low complexity
ibm CWE-264
7.8
2016-09-26 CVE-2016-6038 Path Traversal vulnerability in IBM AIX 5.3/6.1/7.1
Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote authenticated users to read arbitrary files via a crafted URL.
network
low complexity
ibm CWE-22
6.5
2016-08-08 CVE-2016-0281 Improper Input Validation vulnerability in IBM AIX and Vios
The mustendd driver in IBM AIX 5.3, 6.1, 7.1, and 7.2 and VIOS 2.2.x, when the jumbo_frames feature is not enabled, allows remote attackers to cause a denial of service (FC1763 or FC5899 adapter crash) via crafted packets.
network
high complexity
ibm CWE-20
3.7