ibm
538 known vulnerabilities affecting ibm products.
Products
aix 167
vios 149
i 133
websphere_application_server 40
power_system_e1180_\(9080-heu\) 29
power_system_e1180_\(9080-heu\)_firmware 29
power_system_e1080_\(9080-hex\) 28
power_system_e1080_\(9080-hex\)_firmware 28
power_system_e1150_\(9043-mru\) 25
power_system_e1150_\(9043-mru\)_firmware 25
power_system_e1050_\(9043-mrx\) 25
power_system_e1050_\(9043-mrx\)_firmware 25
power_system_l1022_\(9786-22h\) 25
power_system_l1022_\(9786-22h\)_firmware 25
power_system_l1024_\(9786-42h\) 25
power_system_l1024_\(9786-42h\)_firmware 25
power_system_l1122_\(9856-22h\) 25
power_system_l1122_\(9856-22h\)_firmware 25
power_system_l1124_\(9856-42h\) 25
power_system_l1124_\(9856-42h\)_firmware 25
power_system_s1012_\(9028-21b\) 25
power_system_s1012_\(9028-21b\)_firmware 25
power_system_s1014_\(9105-41b\) 25
power_system_s1014_\(9105-41b\)_firmware 25
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-77822 | Medium | 0.2% | 8.2 | IBM ContextForge MCP Gateway could allow a remote authenticated attacker to obta… | |
| CVE-2026-87958 | Medium | 0.2% | 8.1 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to a deni… | |
| CVE-2026-15325 | Medium | 0.2% | 8.7 | IBM WebSphere Application Server and IBM WebSphere Application Server - Liberty … | |
| CVE-2026-16687 | Medium | 0.2% | 9.6 | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 thr… | |
| CVE-2026-16851 | Medium | 0.2% | 7.4 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to c… | |
| CVE-2026-81210 | Medium | 0.2% | 7.7 | IBM DataStage on Cloud Pak for Data 5.4.0.0 concatenates three caller-supplied s… | |
| CVE-2026-16822 | Medium | 0.2% | 9.3 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to i… | |
| CVE-2026-1343 | Medium | 0.2% | 7.2 | IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify… | |
| CVE-2026-8856 | Medium | 0.2% | 7.7 | IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service in configuration… | |
| CVE-2026-18821 | Medium | 0.2% | 7.5 | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through… | |
| CVE-2026-18098 | Medium | 0.2% | 8.1 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obta… | |
| CVE-2026-18175 | Medium | 0.2% | 8.1 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to manipulate databas… | |
| CVE-2026-16832 | Medium | 0.2% | 8.4 | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 thr… | |
| CVE-2026-17414 | Medium | 0.2% | 8.1 | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through… | |
| CVE-2026-18099 | Medium | 0.2% | 8.9 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to exec… | |
| CVE-2026-18847 | Medium | 0.2% | 8.8 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote unauthenticated attacker to ha… | |
| CVE-2026-1342 | Medium | 0.2% | 8.5 | IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify… | |
| CVE-2026-16828 | Medium | 0.2% | 7.6 | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 thr… | |
| CVE-2026-18511 | Medium | 0.2% | 7.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to gener… | |
| CVE-2026-17418 | Medium | 0.2% | 8.5 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to cause… | |
| CVE-2026-17069 | Medium | 0.2% | 8.1 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypa… | |
| CVE-2026-9762 | Medium | 0.2% | 7.8 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to remote… | |
| CVE-2026-16875 | Medium | 0.2% | 7.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ex… | |
| CVE-2026-18509 | Medium | 0.2% | 8.2 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to gain … | |
| CVE-2026-16695 | Medium | 0.2% | 7.8 | IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 could allow a local attac… | |
| CVE-2026-13094 | Medium | 0.1% | 7.8 | IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 is vulnerable to arbitrar… | |
| CVE-2026-80380 | Medium | 0.1% | 7.1 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote attacker to per… | |
| CVE-2026-11980 | Medium | 0.1% | 7.3 | IBM Aspera Desktop App 1.0.5 through 1.0.19 can allow arbitrary code execution b… | |
| CVE-2026-16661 | Medium | 0.1% | 8.2 | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through… | |
| CVE-2026-16707 | Medium | 0.1% | 8.2 | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through… | |
| CVE-2026-16989 | Medium | 0.1% | 7.1 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ga… | |
| CVE-2026-17171 | Medium | 0.1% | 7.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ov… | |
| CVE-2026-16874 | Medium | 0.1% | 7.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ob… | |
| CVE-2026-17422 | Medium | 0.1% | 9.3 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ex… | |
| CVE-2026-16869 | Medium | 0.1% | 7.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ex… | |
| CVE-2026-17029 | Medium | 0.1% | 8.8 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to execute arbitrary c… | |
| CVE-2026-18840 | Medium | 0.1% | 8.2 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ex… | |
| CVE-2026-16933 | Medium | 0.1% | 8.2 | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 thr… | |
| CVE-2026-16997 | Medium | 0.1% | 7.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ex… | |
| CVE-2026-19234 | Medium | 0.1% | 8.2 | Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 thr… | |
| CVE-2026-17124 | Medium | 0.1% | 7.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ex… | |
| CVE-2026-16873 | Medium | 0.1% | 7.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ac… | |
| CVE-2026-19442 | Medium | 0.1% | 8.2 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a pointer validation flaw exis… | |
| CVE-2026-16930 | Medium | 0.1% | 8.2 | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00… | |
| CVE-2026-16943 | Medium | 0.1% | 8.2 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ex… | |
| CVE-2026-17063 | Medium | 0.1% | 7.9 | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00… | |
| CVE-2026-17091 | Medium | 0.1% | 8.4 | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through… | |
| CVE-2026-4788 | Medium | 0.1% | 8.4 | IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information … | |
| CVE-2026-14875 | Medium | 0.1% | 7.3 | IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 is vulnerable to arbitrar… | |
| CVE-2026-16936 | Medium | 0.1% | 8.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to ex… |