Known Vulnerabilities for products from IBM
Listed below are 20 of the newest known vulnerabilities associated with the vendor "IBM".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Additional devices specifications by IBM can be found at device.report : IBM
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-9170 json | IBM HTTP Server 8.5, and 9.0 | Not Provided | 2026-05-26 | 2026-05-27 |
| CVE-2026-8856 json | IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service in configurations where an attacker has write access to parts... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-8855 json | IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial of service in configurations with TLS mutual a... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-8854 json | IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_mem_cache. | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-8852 json | IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_fastcgi module. | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-8850 json | IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_ibm_upload. | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-8835 json | IBM HTTP Server 8.5, and 9.0 is vulnerable to invalid pointer dereference. A privileged user, authenticated to the Administra... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-8834 json | IBM HTTP Server 8.5, and 9.0 contains a buffer overflow vulnerability. A privileged user, authenticated to the Administration... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-8633 json | IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and ... | Not Provided | 2026-05-26 | 2026-05-27 |
| CVE-2026-6389 json | IBM Turbonomic prometurbo agent 8.16.0 through 8.17.6 IBM Turbonomic Application Resource Management grants excessive cluster... | Not Provided | 2026-04-30 | 2026-05-05 |
| CVE-2026-5935 json | IBM Total Storage Service Console (TSSC) / TS4500 IMC 9.2, 9.3, 9.4, 9.5, 9.6 TSSC/IMC could allow an unauthenticated user t... | Not Provided | 2026-04-23 | 2026-05-18 |
| CVE-2026-5926 json | IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and I... | Not Provided | 2026-04-23 | 2026-05-13 |
| CVE-2026-4919 json | IBM Guardium Data Protection 12.1 is vulnerable to cross-site scripting. This vulnerability allows an administrative user to ... | Not Provided | 2026-04-23 | 2026-04-27 |
| CVE-2026-4918 json | IBM Guardium Data Protection 12.1 is vulnerable to stored cross-site scripting. This vulnerability allows an administrative u... | Not Provided | 2026-04-23 | 2026-04-27 |
| CVE-2026-4917 json | IBM Guardium Data Protection 12.1 could allow an administrative user to traverse directories on the system. An attacker could... | Not Provided | 2026-04-23 | 2026-04-27 |
| CVE-2026-4820 json | IBM Maximo Application Suite 9.1, 9.0, 8.11, and 8.10 does not set the secure attribute on authorization tokens or session co... | Not Provided | 2026-04-01 | 2026-04-07 |
| CVE-2026-4788 json | IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that could be read by a local us... | Not Provided | 2026-04-08 | 2026-04-14 |
| CVE-2026-4364 json | IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and I... | Not Provided | 2026-04-01 | 2026-04-07 |
| CVE-2026-4101 json | IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and I... | Not Provided | 2026-04-01 | 2026-04-07 |
| CVE-2026-4051 json | IBM Engineering Lifecycle Management 7.0.3, 7.1.0, and 7.2.0 could allow an attacker with administrative privileges to execut... | Not Provided | 2026-05-26 | 2026-05-27 |
Known software with vulnerabilities from IBM
| Type | Vendor | Product | Version |
|---|---|---|---|
| Hardware | Ibm | 4758 | - |
| Application | Ibm | Access Ibm Message Center | 2.103 |
| Application | Ibm | Access Manager For Microsoft .net | 4.0.6 |
| Application | Ibm | Acprunner | - |
| Application | Ibm | Actuate Encyclopedia For Ibm Maximo | 6.2.0.0 |
| Hardware | Ibm | Advanced Management Module | - |
| Operating System | Ibm | Advanced Management Module Firmware | - |
| Application | Ibm | Advanced Settings Utility | 3.62 |
| Application | Ibm | Agent Controller | 5.0.2 |
| Operating System | Ibm | Aix | - |
| Application | Ibm | Aix 5l | - |
| Application | Ibm | Aix Enetwork Firewall | - |
| Application | Ibm | Aix Parallel Systems Support Programs | - |
| Application | Ibm | Aix Snmp | - |
| Application | Ibm | Algorithmics | - |
| Application | Ibm | Algo Credit Limits | 4.5.0 |
| Application | Ibm | Algo One | 4.7.0 |
| Application | Ibm | Algo Risk Application | 1.1.1 |
| Application | Ibm | Alphaworks Tftp Server | - |
| Application | Ibm | Api Connect | 10.0.0.0 |