cbcvebase.

Ibm Aix vulnerabilities

377 known vulnerabilities affecting ibm/aix.

Total CVEs
377
CISA KEV
0
Public exploits
72
Exploited in wild
5
Severity breakdown
CRITICAL47HIGH180MEDIUM120LOW29

Vulnerabilities

Page 14 of 19
CVE-2022-40233P4MEDIUMCVSS 6.2v7.1v7.2+2 more2022-12-23
CVE-2022-40233 [MEDIUM] CWE-20 CVE-2022-40233: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerabili IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX TCP/IP kernel extension to cause a denial of service. IBM X-Force ID: 235599.
nvd
CVE-2022-39164P4MEDIUMCVSS 6.2v7.1v7.2+2 more2022-12-23
CVE-2022-39164 [MEDIUM] CWE-400 CVE-2022-39164: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerabilit IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 235181.
nvd
CVE-2006-6914P4MEDIUMCVSS 5.0v5.2.0v5.3.02006-12-31
CVE-2006-6914 [MEDIUM] CVE-2006-6914: Unspecified vulnerability in ftpd in IBM AIX 5.2.0 and 5.3.0 allows remote attackers to obtain sensi Unspecified vulnerability in ftpd in IBM AIX 5.2.0 and 5.3.0 allows remote attackers to obtain sensitive information, including passwords, via unspecified vectors.
nvd
CVE-1999-0131P4HIGHCVSS 7.2v3.2v4.1+1 more1996-09-11
CVE-1999-0131 [HIGH] CVE-1999-0131: Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root a Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.
nvd
CVE-1999-1013P4HIGHCVSS 7.2v4.1.5v4.2.11999-09-23
CVE-1999-1013 [HIGH] CVE-1999-1013: named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to ga named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to gain root access via the -f parameter and a malformed zone file.
nvd
CVE-2000-1122P4HIGHCVSS 7.2v4.2v4.2.1+4 more2001-01-09
CVE-2000-1122 [HIGH] CVE-2000-1122: Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute ar Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long argument.
nvd
CVE-1999-0091P4HIGHCVSS 7.2v4.1v4.1.1+6 more1997-10-28
CVE-1999-0091 [HIGH] CVE-1999-0091: Buffer overflow in AIX writesrv command allows local users to obtain root access. Buffer overflow in AIX writesrv command allows local users to obtain root access.
nvd
CVE-1999-0090P4HIGHCVSS 7.2v4.1v4.1.1+4 more1997-10-01
CVE-1999-0090 [HIGH] CVE-1999-0090: Buffer overflow in AIX rcp command allows local users to obtain root access. Buffer overflow in AIX rcp command allows local users to obtain root access.
nvd
CVE-1999-0338P4HIGHCVSS 7.2v3.2.4v3.2.51994-02-24
CVE-1999-0338 [HIGH] CVE-1999-0338: AIX Licensed Program Product performance tools allow local users to gain root access. AIX Licensed Program Product performance tools allow local users to gain root access.
nvd
CVE-2005-3749P4HIGHCVSS 7.2v5.2v5.32005-11-22
CVE-2005-3749 [HIGH] CVE-2005-3749: Unspecified "absolute path vulnerabilities" in the diagela command (diagela.sh) in IBM AIX 5.2 and 5 Unspecified "absolute path vulnerabilities" in the diagela command (diagela.sh) in IBM AIX 5.2 and 5.3 have unknown impact and attack vectors.
nvd
CVE-2008-1274P4MEDIUMCVSS 6.9v6.1.02008-03-10
CVE-2008-1274 [MEDIUM] CVE-2008-1274: Untrusted search path vulnerability in man in IBM AIX 6.1.0 allows local users to execute arbitrary Untrusted search path vulnerability in man in IBM AIX 6.1.0 allows local users to execute arbitrary code via a malicious program in the man directory.
nvd
CVE-2022-43848P4MEDIUMCVSS 6.2v7.1v7.2+2 more2022-12-23
CVE-2022-43848 [MEDIUM] CWE-20 CVE-2022-43848: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerabili IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX perfstat kernel extension to cause a denial of service. IBM X-Force ID: 239169.
nvd
CVE-2022-39165P4MEDIUMCVSS 6.2v7.1v7.2+2 more2022-12-23
CVE-2022-39165 [MEDIUM] CWE-400 CVE-2022-39165: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerabilit IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in CAA to cause a denial of service. IBM X-Force ID: 235183.
nvd
CVE-2022-43849P4MEDIUMCVSS 6.2v7.1v7.2+2 more2022-12-23
CVE-2022-43849 [MEDIUM] CWE-20 CVE-2022-43849: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerabilit IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in the AIX pfcdd kernel extension to cause a denial of service. IBM X-Force ID: 239170.
nvd
CVE-2022-43380P4MEDIUMCVSS 6.2v7.1v7.2+2 more2022-12-23
CVE-2022-43380 [MEDIUM] CWE-399 CVE-2022-43380: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerabil IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX NFS kernel extension to cause a denial of service. IBM X-Force ID: 238640.
nvd
CVE-2022-43381P4MEDIUMCVSS 6.2v7.1v7.2+2 more2022-12-23
CVE-2022-43381 [MEDIUM] CWE-399 CVE-2022-43381: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerabili IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in the AIX SMB client to cause a denial of service. IBM X-Force ID: 238639.
nvd
CVE-2016-8944P4MEDIUMCVSS 5.5v7.1v7.22017-02-15
CVE-2016-8944 [MEDIUM] CWE-20 CVE-2016-8944: IBM AIX 7.1 and 7.2 allows a local user to open a file with a specially crafted argument that would IBM AIX 7.1 and 7.2 allows a local user to open a file with a specially crafted argument that would crash the system. IBM APARs: IV91488, IV91487, IV91456, IV90234.
nvd
CVE-2023-45172P4MEDIUMCVSS 5.5v7.2v7.3+1 more2023-12-19
CVE-2023-45172 [MEDIUM] CWE-20 CVE-2023-45172: IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in AIX windows to cause a denial of service. IBM X-Force ID: 267970.
nvd
CVE-1999-0093P4HIGHCVSS 7.2v4.1v4.1.1+5 more1997-10-29
CVE-1999-0093 [HIGH] CVE-1999-0093: AIX nslookup command allows local users to obtain root access by not dropping privileges correctly. AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.
nvd
CVE-2003-0697P4HIGHCVSS 7.2v4.3v5.1+1 more2003-10-06
CVE-2003-0697 [HIGH] CVE-2003-0697: Format string vulnerability in lpd in the bos.rte.printers fileset for AIX 4.3 through 5.2, with deb Format string vulnerability in lpd in the bos.rte.printers fileset for AIX 4.3 through 5.2, with debug enabled, allows local users to cause a denial of service (crash) or gain root privileges.
nvd
Ibm Aix vulnerabilities | cvebase