Vulnerabilities > IBM

DATE CVE VULNERABILITY TITLE RISK
2024-07-08 CVE-2024-39743 Unspecified vulnerability in IBM MQ Operator
IBM MQ Operator 3.2.2 and IBM MQ Operator 2.0.24 IBM MQ Container Developer Edition is vulnerable to denial of service caused by incorrect memory de-allocation.
network
low complexity
ibm
7.5
2024-07-08 CVE-2024-31897 Unspecified vulnerability in IBM Cloud PAK for Business Automation
IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, 22.0.2, 23.0.1, and 23.0.2 vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm
4.3
2024-07-08 CVE-2024-37528 Unspecified vulnerability in IBM Cloud PAK for Business Automation
IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, 22.0.2, 23.0.1, and 23.0.2 is vulnerable to cross-site scripting.
network
low complexity
ibm
5.4
2024-07-08 CVE-2024-38330 Unspecified vulnerability in IBM I 7.2/7.3/7.4
IBM System Management for i 7.2, 7.3, and 7.4 could allow a local user to gain elevated privileges due to an unqualified library program call.
local
low complexity
ibm
7.8
2024-07-08 CVE-2024-39723 Improper Authentication vulnerability in IBM Storage Virtualize 8.6
IBM FlashSystem 5300 USB ports may be usable even if the port has been disabled by the administrator.
low complexity
ibm CWE-287
4.6
2024-06-30 CVE-2023-50964 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting.
network
low complexity
ibm
5.4
2024-06-30 CVE-2024-28794 Cross-site Scripting vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2024-06-30 CVE-2023-50952 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 is vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm
5.4
2024-06-30 CVE-2023-50953 Unspecified vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned.
network
low complexity
ibm
4.3
2024-06-30 CVE-2024-28797 Cross-site Scripting vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 is vulnerable stored to cross-site scripting.
network
low complexity
ibm CWE-79
5.4