Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

IBM — Vulnerabilities & Security Advisories 5232

Browse all 5232 CVE security advisories affecting IBM. AI-powered Chinese analysis, POCs, and references for each vulnerability.

IBM operates as a multinational technology and consulting corporation, primarily providing enterprise software, hybrid cloud services, and artificial intelligence solutions. Its extensive portfolio, including the Red Hat OpenShift platform and Watson AI suite, creates a broad attack surface that has historically been associated with Remote Code Execution (RCE) vulnerabilities, particularly within web application frameworks and middleware. Cross-site scripting (XSS) and privilege escalation flaws also frequently appear in its legacy enterprise applications and containerized environments. While the company maintains robust security protocols, past incidents have included data breaches affecting customer information and supply chain compromises. The high volume of recorded Common Vulnerabilities and Exposures (CVEs) reflects the complexity and scale of its global infrastructure rather than inherent systemic failure, though it necessitates rigorous patch management and continuous monitoring for enterprise clients relying on its diverse technological stack.

CVE ID Title CVSS Severity Published
CVE-2023-38722 IBM Sterling Partner Engagement Manager cross-site scripting — Sterling Partner Engagement Manager CWE-79 6.4 Medium 2023-10-23
CVE-2023-43045 IBM Sterling Partner Engagement Manager security bypass — Sterling Partner Engagement Manager CWE-288 5.9 Medium 2023-10-23
CVE-2023-38735 IBM Cognos Dashboards improper authentication — Cognos Dashboards on Cloud Pak for Data CWE-287 5.7 Medium 2023-10-22
CVE-2023-38276 IBM Cognos Dashboards information disclosure — Cognos Dashboards on Cloud Pak for Data CWE-319 5.9 Medium 2023-10-22
CVE-2023-38275 IBM Cognos Dashboards information disclosure — Cognos Dashboards on Cloud Pak for Data CWE-319 5.9 Medium 2023-10-22
CVE-2022-43891 IBM Security Verify Privilege information disclosure — Security Verify Privilege CWE-209 2.7 Low 2023-10-17
CVE-2022-43892 IBM Security Verify Privilege information disclosure — Security Verify Privilege CWE-295 3.7 Low 2023-10-17
CVE-2022-43893 IBM Security Verify Privilege denial of service — Security Verify Privilege CWE-400 2.7 Low 2023-10-17
CVE-2022-43889 IBM Security Verify Privilege information disclosure — Security Verify Privilege CWE-200 5.3 Medium 2023-10-17
CVE-2021-29913 IBM Security Verify Privilege improper input validation — Security Verify Privilege CWE-20 6.5 Medium 2023-10-17
CVE-2022-22380 IBM Security Verify Privilege improper authentication — Security Verify Privilege CWE-295 5.0 Medium 2023-10-17
CVE-2022-22375 IBM Security Verify Privilege command execution — Security Verify Privilege CWE-434 7.2 High 2023-10-17
CVE-2021-20581 IBM Security Verify Privilege information disclosure — Security Verify Privilege CWE-613 5.3 Medium 2023-10-17
CVE-2021-38859 IBM Security Verify Privilege information disclosure — Security Verify Privilege CWE-200 4.3 Medium 2023-10-17
CVE-2022-22385 IBM Security Verify Privilege information disclosure — Security Verify Privilege CWE-319 5.9 Medium 2023-10-17
CVE-2022-22386 IBM Security Verify Privilege information disclosure — Security Verify Privilege CWE-311 5.3 Medium 2023-10-17
CVE-2022-22384 IBM Security Verify Privilege improper input validation — Security Verify Privilege CWE-20 4.3 Medium 2023-10-17
CVE-2022-22377 IBM Security Verify Privilege information disclosure — Security Verify Privilege CWE-311 5.3 Medium 2023-10-17
CVE-2023-40373 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows CWE-20 5.3 Medium 2023-10-16
CVE-2023-38719 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows CWE-20 5.1 Medium 2023-10-16
CVE-2023-40372 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows CWE-20 5.3 Medium 2023-10-16
CVE-2023-30991 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows CWE-20 7.5 High 2023-10-16
CVE-2023-40374 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows CWE-20 5.3 Medium 2023-10-16
CVE-2023-38728 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows CWE-20 5.3 Medium 2023-10-16
CVE-2023-38740 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows CWE-20 5.3 Medium 2023-10-16
CVE-2023-38720 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows CWE-20 5.3 Medium 2023-10-16
CVE-2023-30987 IBM Db2 denial of service — Db2 for Linux, UNIX and Windows CWE-20 5.3 Medium 2023-10-16
CVE-2023-38280 IBM Power HMC privilege escalation — Power HMC 8.4 High 2023-10-16
CVE-2023-40377 IBM i privilege escalation — i CWE-269 4.9 Medium 2023-10-16
CVE-2023-33836 IBM Security Verify Governance information disclosure — Security Verify Governance CWE-798 5.3 Medium 2023-10-16

This page lists every published CVE security advisory associated with IBM. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.