Vulnerabilities > IBM > High

DATE CVE VULNERABILITY TITLE RISK
2020-05-14 CVE-2020-4264 Out-of-bounds Write vulnerability in IBM I2 Analysts Notebook 9.2.1
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption.
local
low complexity
ibm CWE-787
7.8
2020-05-14 CVE-2020-4263 Out-of-bounds Write vulnerability in IBM I2 Analysts Notebook 9.2.1
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption.
local
low complexity
ibm CWE-787
7.8
2020-05-14 CVE-2020-4262 Out-of-bounds Write vulnerability in IBM I2 Analysts Notebook 9.2.1
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption.
local
low complexity
ibm CWE-787
7.8
2020-05-14 CVE-2020-4261 Out-of-bounds Write vulnerability in IBM I2 Analysts Notebook 9.2.1
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption.
local
low complexity
ibm CWE-787
7.8
2020-05-14 CVE-2020-4258 Out-of-bounds Write vulnerability in IBM I2 Analysts Notebook 9.2.1
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption.
local
low complexity
ibm CWE-787
7.8
2020-05-14 CVE-2020-4257 Out-of-bounds Write vulnerability in IBM I2 Analysts Notebook 9.2.1
IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption.
local
low complexity
ibm CWE-787
7.8
2020-04-24 CVE-2019-4750 Cross-Site Request Forgery (CSRF) vulnerability in IBM Cloud APP Management 2019.3.0/2019.4.0
IBM Cloud App Management 2019.3.0 and 2019.4.0 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
network
low complexity
ibm CWE-352
8.8
2020-04-23 CVE-2020-4311 Incorrect Permission Assignment for Critical Resource vulnerability in IBM Tivoli Monitoring 6.3.0
IBM Tivoli Monitoring 6.3.0 could allow a local attacker to execute arbitrary code on the system.
local
high complexity
ibm CWE-732
7.0
2020-04-23 CVE-2020-4202 Unspecified vulnerability in IBM Urbancode Deploy
IBM UrbanCode Deploy (UCD) 7.0.3.0 and 7.0.4.0 could allow an authenticated user to impersonate another user if the server is configured to enable Distributed Front End (DFE).
network
low complexity
ibm
8.8
2020-04-17 CVE-2020-4277 Information Exposure Through an Error Message vulnerability in IBM Tririga Application Platform 3.5.3/3.6.1.0
IBM TRIRIGA Application Platform 3.5.3 and 3.6.1 discloses sensitive information in error messages that could aid an attacker formulate future attacks.
network
low complexity
ibm CWE-209
7.5