Vulnerabilities
Vulnerable Software
Ibm:  Security Vulnerabilities
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to cause a denial of service due to improper authorization.
CVSS Score
8.5
EPSS Score
0.003
Published
2026-09-10
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.27 could allow a remote authenticated attacker to bypass security restrictions due to incorrect authorization.
CVSS Score
8.8
EPSS Score
0.004
Published
2026-09-10
IBM ContextForge MCP Gateway 1.0.0 through 1.0.7 could allow a remote attacker to gain administrative access due to the use of default credentials.
CVSS Score
9.8
EPSS Score
0.004
Published
2026-09-10
IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to a security bypass due to improper authentication controls. A local attacker could exploit this vulnerability to escalate privileges and gain unauthorized access to protected resources.
CVSS Score
6.7
EPSS Score
0.001
Published
2026-09-10
IBM WebSphere Application Server 9.0, and 8.5 could allow an authenticated user with a low-privilege administrative role to modify security configuration. This could result in information disclosure or denial of service.
CVSS Score
6.3
EPSS Score
0.002
Published
2026-09-10
IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to server-side request forgery (SSRF) that could allow a remote, unauthenticated attacker to cause the server to send outbound requests to arbitrary endpoints.
CVSS Score
5.3
EPSS Score
0.003
Published
2026-09-10
IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to a denial of service, caused by sending a specially-crafted HTTP request to an administrative endpoint. A remote attacker could exploit this vulnerability to cause the server to exhaust filesystem space.
CVSS Score
6.5
EPSS Score
0.004
Published
2026-09-10
IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to a denial of service, caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to trigger excessive resource consumption, potentially leading to reduced availability of the affected service.
CVSS Score
5.3
EPSS Score
0.003
Published
2026-09-10
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to manipulate database transactions due to improper authorization in the DDM target dispatcher.
CVSS Score
8.1
EPSS Score
0.002
Published
2026-09-04
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to gain unauthorized access due to improper validation of client-supplied authentication parameters.
CVSS Score
8.1
EPSS Score
0.003
Published
2026-09-04


Contact Us

Shodan ® - All rights reserved