Vulnerabilities > IBM > AIX > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-01-20 CVE-2020-4887 Unspecified vulnerability in IBM AIX and Vios
IBM AIX 7.1, 7.2 and AIX VIOS 3.1 could allow a local user to exploit a vulnerability in the gencore user command to create arbitrary files in any directory.
local
low complexity
ibm
5.5
2020-11-20 CVE-2020-4788 IBM Power9 (AIX 7.1, 7.2, and VIOS 3.1) processors could allow a local user to obtain sensitive information from the data in the L1 cache under extenuating circumstances.
local
high complexity
ibm fedoraproject oracle
4.7
2018-06-22 CVE-2018-1655 Information Exposure vulnerability in IBM AIX
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains a vulnerability in the rmsock command that may be used to expose kernel memory.
local
low complexity
ibm CWE-200
5.5
2017-02-15 CVE-2016-8944 Improper Input Validation vulnerability in IBM AIX 7.1/7.2
IBM AIX 7.1 and 7.2 allows a local user to open a file with a specially crafted argument that would crash the system.
local
low complexity
ibm CWE-20
5.5
2016-09-26 CVE-2016-6038 Path Traversal vulnerability in IBM AIX 5.3/6.1/7.1
Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote authenticated users to read arbitrary files via a crafted URL.
network
low complexity
ibm CWE-22
6.5