Ibm

Db2 Mirror For I

28 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.47%
  • Veröffentlicht 14.08.2026 19:18:41
  • Zuletzt bearbeitet 20.08.2026 21:38:59

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensitive information due to improper authentication.

  • EPSS 0.53%
  • Veröffentlicht 14.08.2026 19:18:18
  • Zuletzt bearbeitet 20.08.2026 21:39:40

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to bypass security restrictions due to improper authorization using user-supplied input.

  • EPSS 0.41%
  • Veröffentlicht 14.08.2026 19:17:21
  • Zuletzt bearbeitet 26.08.2026 15:18:41

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to obtain sensitive information due to external control of system configuration.

  • EPSS 1.04%
  • Veröffentlicht 12.08.2026 17:30:22
  • Zuletzt bearbeitet 13.08.2026 16:47:02

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

  • EPSS 0.19%
  • Veröffentlicht 23.07.2025 14:27:08
  • Zuletzt bearbeitet 07.08.2025 14:36:42

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 does not disallow the session id after use which could allow an authenticated user to impersonate another user on the system.

  • EPSS 0.16%
  • Veröffentlicht 23.07.2025 14:26:06
  • Zuletzt bearbeitet 07.08.2025 14:36:55

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 GUI is affected by cross-site WebSocket hijacking vulnerability. By sending a specially crafted request, an unauthenticated malicious actor could exploit this vulnerability to sniff an existing WebSocket connec...

  • EPSS 0.33%
  • Veröffentlicht 18.12.2023 20:15:08
  • Zuletzt bearbeitet 21.11.2024 08:30:44

IBM i 7.3, 7.4, 7.5, IBM i Db2 Mirror for i 7.4 and 7.5 web browser clients may leave clear-text passwords in browser memory that can be viewed using common browser tools before the memory is garbage collected. A malicious actor with access to the v...

  • EPSS 0.64%
  • Veröffentlicht 07.04.2023 14:15:07
  • Zuletzt bearbeitet 21.11.2024 07:27:22

The IBM Toolbox for Java (Db2 Mirror for i 7.4 and 7.5) could allow a user to obtain sensitive information, caused by utilizing a Java string for processing. Since Java strings are immutable, their contents exist in memory until garbage collected. T...