Show filters
157 Total Results
Displaying 1-10 of 157
Sort by:
Attacker Value
Moderate

CVE-2018-1655

Disclosure Date: June 22, 2018 (last updated November 26, 2024)
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains a vulnerability in the rmsock command that may be used to expose kernel memory. IBM X-Force ID: 144748.
1
Attacker Value
Very High

CVE-2014-0930

Disclosure Date: May 08, 2014 (last updated October 05, 2023)
The ptrace system call in IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.2.x, allows local users to cause a denial of service (system crash) or obtain sensitive information from kernel memory via a crafted PT_LDINFO operation.
1
Attacker Value
Unknown

CVE-2014-3566

Disclosure Date: October 15, 2014 (last updated November 25, 2024)
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE" issue.
Attacker Value
Unknown

CVE-2017-1692

Disclosure Date: February 07, 2018 (last updated November 26, 2024)
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges. IBM X-Force ID: 134067.
0
Attacker Value
Unknown

CVE-2017-1541

Disclosure Date: October 04, 2017 (last updated November 26, 2024)
A flaw in the AIX 5.3, 6.1, 7.1, and 7.2 JRE/SDK installp and updatep packages prevented the java.security, java.policy and javaws.policy files from being updated correctly. IBM X-Force ID: 130809.
0
Attacker Value
Unknown

CVE-2016-6079

Disclosure Date: February 15, 2017 (last updated November 26, 2024)
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges. IBM APARs: IV88658, IV87981, IV88419, IV87640, IV88053.
0
Attacker Value
Unknown

CVE-2016-6038

Disclosure Date: September 26, 2016 (last updated November 25, 2024)
Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote authenticated users to read arbitrary files via a crafted URL.
0
Attacker Value
Unknown

CVE-2016-0266

Disclosure Date: August 08, 2016 (last updated November 25, 2024)
IBM AIX 5.3, 6.1, 7.1, and 7.2 and VIOS 2.2.x do not default to the latest TLS version, which makes it easier for man-in-the-middle attackers to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown

CVE-2016-0281

Disclosure Date: August 08, 2016 (last updated November 25, 2024)
The mustendd driver in IBM AIX 5.3, 6.1, 7.1, and 7.2 and VIOS 2.2.x, when the jumbo_frames feature is not enabled, allows remote attackers to cause a denial of service (FC1763 or FC5899 adapter crash) via crafted packets.
0
Attacker Value
Unknown

CVE-2015-4948

Disclosure Date: October 16, 2015 (last updated October 05, 2023)
netstat in IBM AIX 5.3, 6.1, and 7.1 and VIOS 2.2.x, when a fibre channel adapter is used, allows local users to gain privileges via unspecified vectors.
0