Ibm Aix vulnerabilities
522 known vulnerabilities affecting ibm/aix.
Total CVEs
522
CISA KEV
0
Public exploits
72
Exploited in wild
5
Severity breakdown
CRITICAL90HIGH257MEDIUM142LOW32
Vulnerabilities
Page 22 of 27
CVE-2007-5805P4MEDIUMCVSS 6.9v5.2v5.32007-11-05
CVE-2007-5805 [MEDIUM] CWE-59 CVE-2007-5805: cfgcon in IBM AIX 5.2 and 5.3 does not properly validate the argument to the "-p" option to swcons,
cfgcon in IBM AIX 5.2 and 5.3 does not properly validate the argument to the "-p" option to swcons, which allows local users in the system group to create an arbitrary file, and enable world writability of this file, via a symlink attack involving use of the file's name as the argument. NOTE: this issue is due to an incomplete fix for CVE-2007-5804.
nvd
CVE-2026-16886P4MEDIUMCVSS 4.3≥ 7.2.5, ≤ 7.2.5.212≥ 7.3.2, ≤ 7.3.2.5+4 more2026-08-19
CVE-2026-16886 [MEDIUM] CWE-787 CVE-2026-16886: IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of ser
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to an out-of-bounds write.
nvd
CVE-2026-16825P4MEDIUMCVSS 4.2≥ 7.2.5, ≤ 7.2.5.212≥ 7.3.2, ≤ 7.3.2.5+4 more2026-08-19
CVE-2026-16825 [MEDIUM] CWE-787 CVE-2026-16825: IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to obtain
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to obtain sensitive information and cause a denial of service due to an out-of-bounds write.
nvd
CVE-2023-45167P4MEDIUMCVSS 5.5v7.32023-11-10
CVE-2023-45167 [MEDIUM] CWE-20 CVE-2023-45167: IBM AIX's 7.3 Python implementation could allow a non-privileged local user to exploit a vulnerabili
IBM AIX's 7.3 Python implementation could allow a non-privileged local user to exploit a vulnerability to cause a denial of service. IBM X-Force ID: 267965.
nvd
CVE-2022-22444P4MEDIUMCVSS 5.5v7.1v7.2+1 more2022-06-15
CVE-2022-22444 [MEDIUM] CVE-2022-22444: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a local user to exploit a vulnerability in the lpd d
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a local user to exploit a vulnerability in the lpd daemon to cause a denial of service. IBM X-Force ID: 224444.
nvd
CVE-2021-38994P4MEDIUMCVSS 5.5v7.1v7.2+1 more2022-02-24
CVE-2021-38994 [MEDIUM] CVE-2021-38994: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerabili
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 213072.
nvd
CVE-2021-38995P4MEDIUMCVSS 5.5v7.1v7.2+1 more2022-02-24
CVE-2021-38995 [MEDIUM] CVE-2021-38995: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerabili
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 213073.
nvd
CVE-2021-29862P4MEDIUMCVSS 5.5v7.1v7.22021-08-26
CVE-2021-29862 [MEDIUM] CVE-2021-29862: IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in
IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 206086.
nvd
CVE-2021-29727P4MEDIUMCVSS 5.5v7.1v7.22021-08-26
CVE-2021-29727 [MEDIUM] CVE-2021-29727: IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a local user to exploit a vulnerability in the AIX kernel
IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 201106.
nvd
CVE-2021-38988P4MEDIUMCVSS 5.5≥ 7.1.5.0, ≤ 7.1.5.32v7.2.4.0+5 more2022-03-07
CVE-2021-38988 [MEDIUM] CVE-2021-38988: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerabili
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 212950.
nvd
CVE-2021-38989P4MEDIUMCVSS 5.5≥ 7.1.5.0, ≤ 7.1.5.36≥ 7.2.4.0, ≤ 7.2.4.4+7 more2022-03-07
CVE-2021-38989 [MEDIUM] CVE-2021-38989: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerabili
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 212951.
nvd
CVE-2021-38996P4MEDIUMCVSS 5.5v7.1v7.2+1 more2022-03-02
CVE-2021-38996 [MEDIUM] CVE-2021-38996: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerabili
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 213076.
nvd
CVE-2021-38993P4MEDIUMCVSS 5.5v7.1v7.2+1 more2022-02-25
CVE-2021-38993 [MEDIUM] CVE-2021-38993: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerabili
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the smbcd daemon to cause a denial of service. IBM X-Force ID: 212962.
nvd
CVE-2023-45165P4MEDIUMCVSS 5.5v7.2v7.3+1 more2023-12-22
CVE-2023-45165 [MEDIUM] CWE-20 CVE-2023-45165: IBM AIX 7.2 and 7.3 could allow a non-privileged local user to exploit a vulnerability in the AIX SM
IBM AIX 7.2 and 7.3 could allow a non-privileged local user to exploit a vulnerability in the AIX SMB client to cause a denial of service. IBM X-Force ID: 267963.
nvd
CVE-2023-45175P4MEDIUMCVSS 5.5v7.2v7.3+1 more2024-01-11
CVE-2023-45175 [MEDIUM] CWE-20 CVE-2023-45175: IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in
IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the TCP/IP kernel extension to cause a denial of service. IBM X-Force ID: 267973.
nvd
CVE-2023-45171P4MEDIUMCVSS 5.5v7.2v7.3+1 more2024-01-11
CVE-2023-45171 [MEDIUM] CWE-20 CVE-2023-45171: IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in
IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the kernel to cause a denial of service. IBM X-Force ID: 267969.
nvd
CVE-2023-45173P4MEDIUMCVSS 5.5v7.2v7.3+1 more2024-01-11
CVE-2023-45173 [MEDIUM] CWE-20 CVE-2023-45173: IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in
IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the NFS kernel extension to cause a denial of service. IBM X-Force ID: 267971.
nvd
CVE-2023-45169P4MEDIUMCVSS 5.5v7.2v7.3+1 more2024-01-11
CVE-2023-45169 [MEDIUM] CWE-20 CVE-2023-45169: IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in
IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the pmsvcs kernel extension to cause a denial of service. IBM X-Force ID: 267967.
nvd
CVE-2024-47102P4MEDIUMCVSS 5.5v7.2v7.32024-12-25
CVE-2024-47102 [MEDIUM] CWE-863 CVE-2024-47102: IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1 could allow a non-privileged local user to exploit a vulnerabil
IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1
could allow a non-privileged local user to exploit a vulnerability in the AIX perfstat kernel extension to cause a denial of service.
nvd
CVE-2024-52906P4MEDIUMCVSS 5.5v7.2v7.3+1 more2024-12-25
CVE-2024-52906 [MEDIUM] CWE-362 CVE-2024-52906: IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1 could allow a non-privileged local user to exploit a vulnerab
IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1
could allow a non-privileged local user to exploit a vulnerability in the TCP/IP kernel extension to cause a denial of service.
nvd