Filtered by vendor Ibm Subscriptions
Total 7996 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-1999-0038 7 Bsdi, Data General, Debian and 4 more 8 Bsd Os, Dg Ux, Debian Linux and 5 more 2025-04-03 8.4 High
Buffer overflow in xlock program allows local users to execute commands as root.
CVE-2001-1189 1 Ibm 1 Websphere Application Server 2025-04-03 N/A
IBM Websphere Application Server 3.5.3 and earlier stores a password in cleartext in the sas.server.props file, which allows local users to obtain the passwords via a JSP script.
CVE-1999-0338 1 Ibm 1 Aix 2025-04-03 N/A
AIX Licensed Program Product performance tools allow local users to gain root access.
CVE-2006-0663 1 Ibm 1 Lotus Domino Inotes Client 2025-04-03 N/A
Multiple cross-site scripting (XSS) vulnerabilities in Lotus Domino iNotes Client 6.5.4 and 7.0 allow remote attackers to inject arbitrary web script or HTML via (1) an email subject; (2) an encoded javascript URI, as demonstrated using "java
script:"; or (3) when the Domino Web Access ActiveX control is not installed, via an email attachment filename.
CVE-2001-1143 1 Ibm 1 Db2 Universal Database 2025-04-03 N/A
IBM DB2 7.0 allows a remote attacker to cause a denial of service (crash) via a single byte to (1) db2ccs.exe on port 6790, or (2) db2jds.exe on port 6789.
CVE-2001-0554 10 Debian, Freebsd, Ibm and 7 more 12 Debian Linux, Freebsd, Aix and 9 more 2025-04-03 N/A
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
CVE-1999-0789 1 Ibm 1 Aix 2025-04-03 N/A
Buffer overflow in AIX ftpd in the libc library.
CVE-1999-1117 1 Ibm 1 Aix 2025-04-03 N/A
lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line parameter.
CVE-2001-0052 1 Ibm 1 Db2 Universal Database 2025-04-03 N/A
IBM DB2 Universal Database version 6.1 allows users to cause a denial of service via a malformed query.
CVE-2004-2526 1 Ibm 1 Tivoli Directory Server 2025-04-03 N/A
Directory traversal vulnerability in ldacgi.exe in IBM Tivoli Directory Server 4.1 and earlier allows remote attackers to view arbitrary files via a .. (dot dot) in the Template parameter.
CVE-2006-3068 1 Ibm 1 Db2 Universal Database 2025-04-03 N/A
IBM DB2 Universal Database (UDB) before 8.2 FixPak 12 allows remote attackers to cause a denial of service (application crash) by sending "incorrect information ... regarding the package name/creator," which leads to a "memory overwrite."
CVE-1999-0112 2 Cde, Ibm 2 Cde, Aix 2025-04-03 N/A
Buffer overflow in AIX dtterm program for the CDE.
CVE-1999-1208 1 Ibm 1 Aix 2025-04-03 N/A
Buffer overflow in ping in AIX 4.2 and earlier allows local users to gain root privileges via a long command line argument.
CVE-1999-0122 1 Ibm 1 Aix 2025-04-03 N/A
Buffer overflow in AIX lchangelv gives root access.
CVE-2001-0051 1 Ibm 1 Db2 Universal Database 2025-04-03 N/A
IBM DB2 Universal Database version 6.1 creates an account with a default user name and password, which allows remote attackers to gain access to the database.
CVE-2000-1138 1 Ibm 1 Lotus Notes 2025-04-03 N/A
Lotus Notes R5 client R5.0.5 and earlier does not properly warn users when an S/MIME email message has been modified, which could allow an attacker to modify the email in transit without being detected.
CVE-2000-0652 1 Ibm 1 Websphere Application Server 2025-04-03 N/A
IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which contains the "/servlet/file" string.
CVE-1999-0131 8 Bsdi, Digital, Eric Allman and 5 more 9 Bsd Os, Osf 1, Sendmail and 6 more 2025-04-03 N/A
Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.
CVE-2006-4416 1 Ibm 1 Aix 2025-04-03 N/A
Untrusted search path vulnerability in the mkvg command in IBM AIX 5.2 and 5.3 allows local users to gain privileges by modifying the path to point to a malicious (1) chdev, (2) mkboot, (3) varyonvg, or (4) varyoffvg program.
CVE-2006-2436 1 Ibm 1 Websphere Application Server 2025-04-03 N/A
WebSphere Application Server 5.0.2 (or any earlier cumulative fix) stores admin and LDAP passwords in plaintext in the FFDC logs when a login to WebSphere fails, which allows attackers to gain privileges.