cbcvebase.

Ibm Aix vulnerabilities

522 known vulnerabilities affecting ibm/aix.

Total CVEs
522
CISA KEV
0
Public exploits
72
Exploited in wild
5
Severity breakdown
CRITICAL90HIGH257MEDIUM142LOW32

Vulnerabilities

Page 17 of 27
CVE-2021-29860P4MEDIUMCVSS 6.2v7.1.0v7.2.0+2 more2021-11-17
CVE-2021-29860 [MEDIUM] CVE-2021-29860: IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the libc.a library to expose sensitive information. IBM X-Force ID: 206084.
nvd
CVE-2021-29861P4MEDIUMCVSS 6.2v7.1.0v7.2.0+2 more2021-11-17
CVE-2021-29861 [MEDIUM] CVE-2021-29861: IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in EFS to expose sensitive information. IBM X-Force ID: 206085.
nvd
CVE-2023-40371P4MEDIUMCVSS 5.5v7.2v7.3+1 more2023-08-24
CVE-2023-40371 [MEDIUM] CWE-327 CVE-2023-40371: IBM AIX 7.2, 7.3, VIOS 3.1's OpenSSH implementation could allow a non-privileged local user to acces IBM AIX 7.2, 7.3, VIOS 3.1's OpenSSH implementation could allow a non-privileged local user to access files outside of those allowed due to improper access controls. IBM X-Force ID: 263476.
nvd
CVE-2005-3060P4HIGHCVSS 7.2v5.2v5.32005-09-30
CVE-2005-3060 [HIGH] CVE-2005-3060: Buffer overflow in getconf in IBM AIX 5.2 to 5.3 allows local users to execute arbitrary code via un Buffer overflow in getconf in IBM AIX 5.2 to 5.3 allows local users to execute arbitrary code via unknown vectors.
nvd
CVE-2005-2235P4HIGHCVSS 7.2v5.1v5.1l+5 more2005-07-12
CVE-2005-2235 [HIGH] CVE-2005-2235: Buffer overflow in the diagTasksWebSM command in IBM AIX 5.1, 5.2 and 5.3, might allow local users t Buffer overflow in the diagTasksWebSM command in IBM AIX 5.1, 5.2 and 5.3, might allow local users to execute arbitrary code via long command line arguments.
nvd
CVE-2006-5010P4HIGHCVSS 7.2v5.3.02006-09-27
CVE-2006-5010 [HIGH] CVE-2006-5010: Untrusted search path vulnerability in acctctl in IBM AIX 5.3.0 allows local users to execute arbitr Untrusted search path vulnerability in acctctl in IBM AIX 5.3.0 allows local users to execute arbitrary commands by modifying the path to point to a malicious mkdir program.
nvd
CVE-2008-0584P4HIGHCVSS 7.2v5.2v5.32008-02-05
CVE-2008-0584 [HIGH] CWE-264 CVE-2008-0584: Multiple buffer overflows in bos.rte.control in IBM AIX 5.2 and 5.3 allow local users to gain privil Multiple buffer overflows in bos.rte.control in IBM AIX 5.2 and 5.3 allow local users to gain privileges via unspecified vectors related to the (1) swap, (2) swapoff, and (3) swapon programs.
nvd
CVE-2007-4797P4HIGHCVSS 7.2v5.2v5.32007-09-10
CVE-2007-4797 [HIGH] CWE-119 CVE-2007-4797: Multiple buffer overflows in unspecified svprint (System V print) commands in bos.svprint.rte in IBM Multiple buffer overflows in unspecified svprint (System V print) commands in bos.svprint.rte in IBM AIX 5.2 and 5.3 allow local users to gain privileges via unspecified vectors.
nvd
CVE-2007-4792P4HIGHCVSS 7.2v5.32007-09-10
CVE-2007-4792 [HIGH] CWE-119 CVE-2007-4792: Buffer overflow in ibstat in devices.common.IBM.ib.rte in IBM AIX 5.3 allows local users to gain pri Buffer overflow in ibstat in devices.common.IBM.ib.rte in IBM AIX 5.3 allows local users to gain privileges via unspecified vectors.
nvd
CVE-2007-4793P4HIGHCVSS 7.2v5.2v5.32007-09-10
CVE-2007-4793 [HIGH] CWE-119 CVE-2007-4793: Buffer overflow in xlplm in plm.server.rte in IBM AIX 5.2 and 5.3 allows local users to gain privile Buffer overflow in xlplm in plm.server.rte in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecified vectors.
nvd
CVE-2026-17195P4MEDIUMCVSS 6.5≥ 7.2.5, ≤ 7.2.5.212≥ 7.3.2, ≤ 7.3.2.5+4 more2026-08-20
CVE-2026-17195 [MEDIUM] CWE-787 CVE-2026-17195: IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to cause a denial of serv IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to cause a denial of service due to an out-of-bounds write.
nvd
CVE-1999-0017P4HIGHCVSS 7.5v3.2v4.1+2 more1997-12-10
CVE-1999-0017 [HIGH] CVE-1999-0017: FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP clien FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
nvd
CVE-2002-0744P4CRITICALCVSS 10.0v4.3.32002-08-12
CVE-2002-0744 [CRITICAL] CVE-2002-0744: namerslv in AIX 4.3.3 core dumps when called with a very long argument, possibly as a result of a bu namerslv in AIX 4.3.3 core dumps when called with a very long argument, possibly as a result of a buffer overflow.
nvd
CVE-1999-0835P4CRITICALCVSS 10.0v4.31999-11-10
CVE-1999-0835 [CRITICAL] CVE-1999-0835: Denial of service in BIND named via malformed SIG records. Denial of service in BIND named via malformed SIG records.
nvd
CVE-2018-1655P4MEDIUMCVSS 5.5v5.3v6.1+2 more2018-06-22
CVE-2018-1655 [MEDIUM] CWE-200 CVE-2018-1655: IBM AIX 5.3, 6.1, 7.1, and 7.2 contains a vulnerability in the rmsock command that may be used to ex IBM AIX 5.3, 6.1, 7.1, and 7.2 contains a vulnerability in the rmsock command that may be used to expose kernel memory. IBM X-Force ID: 144748.
nvd
CVE-1999-0022P4HIGHCVSS 7.8v3.1v3.2+9 more1996-07-03
CVE-1999-0022 [HIGH] CWE-125 CVE-1999-0022: Local user gains root privileges via buffer overflow in rdist, via expstr() function. Local user gains root privileges via buffer overflow in rdist, via expstr() function.
nvd
CVE-2026-16883P4MEDIUMCVSS 5.5≥ 7.2.5, ≤ 7.2.5.212≥ 7.3.2, ≤ 7.3.2.5+4 more2026-08-19
CVE-2026-16883 [MEDIUM] CWE-125 CVE-2026-16883: IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to obtain sensitive infor IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to obtain sensitive information due to an out-of-bounds read.
nvd
CVE-1999-0138P4HIGHCVSS 7.2v3.2.5v41996-06-26
CVE-1999-0138 [HIGH] CVE-1999-0138: The suidperl and sperl program do not give up root privileges when changing UIDs back to the origina The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing root access.
nvd
CVE-2005-4271P4HIGHCVSS 7.2v5.3v5.3_l2005-12-15
CVE-2005-4271 [HIGH] CVE-2005-4271: Buffer overflow in the malloc debug system in IBM AIX 5.3 allows local users to execute arbitrary co Buffer overflow in the malloc debug system in IBM AIX 5.3 allows local users to execute arbitrary code.
nvd
CVE-2005-2233P4HIGHCVSS 7.2v5.1v5.1l+5 more2005-07-12
CVE-2005-2233 [HIGH] CVE-2005-2233: Buffer overflow in multiple "p" commands in IBM AIX 5.1, 5.2 and 5.3 might allow local users to exec Buffer overflow in multiple "p" commands in IBM AIX 5.1, 5.2 and 5.3 might allow local users to execute arbitrary code via long command line arguments to (1) penable or other hard-linked files including (2) pdisable, (3) pstart, (4) phold, (5) pdelay, or (6) pshare.
nvd
Ibm Aix vulnerabilities | cvebase