Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

IBM — Vulnerabilities & Security Advisories 5232

Browse all 5232 CVE security advisories affecting IBM. AI-powered Chinese analysis, POCs, and references for each vulnerability.

IBM operates as a multinational technology and consulting corporation, primarily providing enterprise software, hybrid cloud services, and artificial intelligence solutions. Its extensive portfolio, including the Red Hat OpenShift platform and Watson AI suite, creates a broad attack surface that has historically been associated with Remote Code Execution (RCE) vulnerabilities, particularly within web application frameworks and middleware. Cross-site scripting (XSS) and privilege escalation flaws also frequently appear in its legacy enterprise applications and containerized environments. While the company maintains robust security protocols, past incidents have included data breaches affecting customer information and supply chain compromises. The high volume of recorded Common Vulnerabilities and Exposures (CVEs) reflects the complexity and scale of its global infrastructure rather than inherent systemic failure, though it necessitates rigorous patch management and continuous monitoring for enterprise clients relying on its diverse technological stack.

CVE ID Title CVSS Severity Published
CVE-2024-39735 IBM Datacap Navigator cross-site scripting — Datacap Navigator CWE-79 5.4 Medium 2024-07-15
CVE-2024-39731 IBM Datacap Navigator information disclosure — Datacap Navigator CWE-327 5.9 Medium 2024-07-15
CVE-2024-39728 IBM Datacap Navigator cross-site scripting — Datacap Navigator CWE-79 6.4 Medium 2024-07-15
CVE-2024-39736 IBM Datacap Navigator HTTP HOST header injection — Datacap Navigator CWE-644 6.5 Medium 2024-07-15
CVE-2024-39737 IBM Datacap Navigator information disclosure — Datacap Navigator CWE-209 5.4 Medium 2024-07-15
CVE-2024-39739 IBM Datacap Navigator server-side request forgery — Datacap Navigator CWE-918 5.4 Medium 2024-07-15
CVE-2024-39733 IBM Datacap Navigator information disclosure — Datacap Navigator CWE-256 5.5 Medium 2024-07-14
CVE-2024-39732 IBM Datacap Navigator information disclosure — Datacap Navigator CWE-316 4.1 Medium 2024-07-14
CVE-2024-39734 IBM Datacap Navigator information disclosure — Datacap Navigator 4.3 Medium 2024-07-14
CVE-2024-40690 IBM InfoSphere Server cross-site scripting — InfoSphere Server CWE-79 5.4 Medium 2024-07-12
CVE-2023-33860 IBM Security ReaQta information disclosure — Security QRadar EDR CWE-614 5.3 Medium 2024-07-10
CVE-2023-33859 IBM Security ReaQta information disclosure — Security QRadar EDR CWE-204 5.3 Medium 2024-07-10
CVE-2023-35006 IBM Security ReaQta HTML injection — Security QRadar EDR CWE-80 5.4 Medium 2024-07-10
CVE-2024-25023 IBM QRadar Suite Software information disclosure — QRadar Suite Software CWE-312 5.5 Medium 2024-07-09
CVE-2024-35154 IBM WebSphere Application Server code execution — WebSphere Application Server CWE-250 7.2 High 2024-07-09
CVE-2024-39742 IBM MQ Container authentication bypass — MQ Operator CWE-187 8.1 High 2024-07-08
CVE-2024-39743 IBM MQ Container denial of service — MQ Operator CWE-405 5.9 Medium 2024-07-08
CVE-2024-37528 IBM Cloud Pak for Business Automation cross-site scripting — Cloud Pak for Business Automation CWE-79 4.8 Medium 2024-07-08
CVE-2024-31897 IBM Cloud Pak for Business Automation server-side request forgery — Cloud Pak for Business Automation CWE-918 4.3 Medium 2024-07-08
CVE-2024-38330 IBM i privilege escalation — i CWE-427 7.0 High 2024-07-08
CVE-2024-39723 IBM FlashSystem denial of service — Storage Virtualize CWE-1299 4.6 Medium 2024-07-08
CVE-2023-50964 IBM InfoSphere Information Server cross-site scripting — InfoSphere Information Server CWE-79 5.4 Medium 2024-06-30
CVE-2024-28794 IBM InfoSphere Information Server cross-site scripting — InfoSphere Information Server CWE-79 5.4 Medium 2024-06-30
CVE-2023-50953 IBM InfoSphere Information Server information disclosure — InfoSphere Information Server CWE-209 5.4 Medium 2024-06-30
CVE-2023-50952 IBM InfoSphere Information Server server-side request forgery — InfoSphere Information Server CWE-918 5.4 Medium 2024-06-30
CVE-2024-28797 IBM InfoSphere Information Server cross-site scripting — InfoSphere Information Server CWE-79 6.4 Medium 2024-06-30
CVE-2024-31898 IBM InfoSphere Information Server data modification — InfoSphere Information Server CWE-639 5.4 Medium 2024-06-30
CVE-2023-50954 IBM InfoSphere Information Server information disclosure — InfoSphere Information Server CWE-598 4.3 Medium 2024-06-30
CVE-2024-31902 IBM InfoSphere Information Server cross-site request forgery — InfoSphere Information Server CWE-352 4.3 Medium 2024-06-30
CVE-2024-35119 IBM InfoSphere Information Server information disclosure — InfoSphere Information Server CWE-209 5.3 Medium 2024-06-30

This page lists every published CVE security advisory associated with IBM. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.