Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm integration bus vulnerabilities and exploits
(subscribe to this query)
9.1
CVSSv3
CVE-2016-9706
IBM Integration Bus 9.0 and 10.0 and WebSphere Message Broker SOAP FLOWS is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive informatio...
Ibm Websphere Message Broker 8.0
Ibm Integration Bus 9.0
Ibm Integration Bus 10.0
8.1
CVSSv3
CVE-2017-1694
IBM Integration Bus 9.0 and 10.0 transmits user credentials in plain in clear text which can be read by an attacker using man in the middle techniques. IBM X-Force ID: 134165.
Ibm Integration Bus 10.0.0.5
Ibm Integration Bus 9.0.0.0
Ibm Integration Bus 9.0.0.2
Ibm Integration Bus 10.0.0.3
Ibm Integration Bus 10.0.0.4
Ibm Integration Bus 10.0.0.7
Ibm Integration Bus 9.0.0.3
Ibm Integration Bus 9.0.0.6
Ibm Integration Bus 9.0.0.7
Ibm Integration Bus 9.0.0.9
Ibm Integration Bus 10.0.0.8
Ibm Integration Bus 9.0.0.5
Ibm Integration Bus 10.0.0.0
Ibm Integration Bus 9.0.0.8
Ibm Integration Bus 10.0.0.1
Ibm Integration Bus 10.0.0.6
Ibm Integration Bus 9.0.0.1
Ibm Integration Bus 9.0.0.4
Ibm Integration Bus 10.0.0.2
Ibm Integration Bus 10.0.0.9
6.5
CVSSv3
CVE-2024-27265
IBM Integration Bus for z/OS 10.1 up to and including 10.1.0.3 is vulnerable to cross-site request forgery which could allow an malicious user to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 284564.
Ibm Integration Bus
6.5
CVSSv3
CVE-2024-22332
The IBM Integration Bus for z/OS 10.1 up to and including 10.1.0.2 AdminAPI is vulnerable to a denial of service due to file system exhaustion. IBM X-Force ID: 279972.
Ibm Integration Bus
6.1
CVSSv3
CVE-2016-9010
IBM WebSphere Message Broker 9.0 and 10.0 could allow a remote malicious user to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possib...
Ibm Integration Bus 9.0
Ibm Integration Bus 10.0
Ibm Websphere Message Broker 8.0
5.9
CVSSv3
CVE-2016-8918
IBM Integration Bus, under non default configurations, could allow a remote user to authenticate without providing valid credentials.
Ibm Integration Bus 10.0
5.6
CVSSv3
CVE-2017-1693
IBM Integration Bus 9.0 and 10.0 could allow an attacker that has captured a valid session id to hijack another users session during a small timeframe before the session times out. IBM X-Force ID: 134164.
Ibm Integration Bus 10.0.0.1
Ibm Integration Bus 10.0.0.3
Ibm Integration Bus 10.0.0.6
Ibm Integration Bus 9.0.0.4
Ibm Integration Bus 9.0.0.8
Ibm Integration Bus 9.0.0.6
Ibm Integration Bus 10.0.0.4
Ibm Integration Bus 10.0.0.8
Ibm Integration Bus 10.0.0.9
Ibm Integration Bus 10.0.0.5
Ibm Integration Bus 10.0
Ibm Integration Bus 9.0.0.0
Ibm Integration Bus 9.0.0.1
Ibm Integration Bus 9.0.0.2
Ibm Integration Bus 9.0.0.3
Ibm Integration Bus 10.0.0.0
Ibm Integration Bus 10.0.0.2
Ibm Integration Bus 10.0.0.7
Ibm Integration Bus 9.0.0.5
Ibm Integration Bus 9.0.0.7
5.5
CVSSv3
CVE-2023-45176
IBM App Connect Enterprise 11.0.0.1 up to and including 11.0.0.23, 12.0.1.0 up to and including 12.0.10.0 and IBM Integration Bus 10.1 up to and including 10.1.0.1 are vulnerable to a denial of service for integration nodes on Windows. IBM X-Force ID: 247998.
Ibm Integration Bus 10.1
Ibm App Connect Enterprise
5.5
CVSSv3
CVE-2017-1418
IBM Integration Bus 9.0.0.0, 9.0.0.11, 10.0.0.0, and 10.0.0.14 (including IBM WebSphere Message Broker 8.0.0.0 and 8.0.0.9) has insecure permissions on certain files. A local attacker could exploit this vulnerability to modify or delete these files with an unknown impact. IBM X-F...
Ibm Integration Bus
Ibm Websphere Message Broker
5.5
CVSSv3
CVE-2017-1207
IBM WebSphere Message Broker stores user credentials in plain in clear text which can be read by a local user. IBM X-Force ID: 123777.
Ibm Websphere Message Broker 8.0.0.4
Ibm Websphere Message Broker 8.0.0.5
Ibm Websphere Message Broker 8.0.0.0
Ibm Websphere Message Broker 8.0.0.6
Ibm Websphere Message Broker 8.0.0.1
Ibm Websphere Message Broker 8.0.0.2
Ibm Websphere Message Broker 8.0.0.3
Ibm Websphere Message Broker 8.0.0.7
Ibm Integration Bus 9.0.0.4
Ibm Integration Bus 9.0.0.6
Ibm Integration Bus 10.0.0.7
Ibm Integration Bus 9.0.0.1
Ibm Integration Bus 10.0.0
Ibm Integration Bus 9.0.0
Ibm Integration Bus 9.0.0.2
Ibm Integration Bus 9.0.0.3
Ibm Integration Bus 10.0.0.2
Ibm Integration Bus 10.0.0.3
Ibm Integration Bus 10.0.0.4
Ibm Integration Bus 10.0.0.5
Ibm Integration Bus 9.0.0.5
Ibm Integration Bus 9.0.0.7
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5248
CVE-2024-3110
CVE-2024-5552
CVE-2024-29415
HTML injection
CVE-2024-3095
TCP
type confusion
CVE-2024-1800
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »