CVE-2018-1383
- EPSS 0.51%
- Published 13.02.2018 20:29:00
- Last modified 21.11.2024 03:59:43
A software logic bug creates a vulnerability in an AIX 6.1, 7.1, and 7.2 daemon which could allow a user with root privileges on one system, to obtain root access on another machine. IBM X-force ID: 138117.
CVE-2017-1692
- EPSS 0.06%
- Published 07.02.2018 17:29:01
- Last modified 21.11.2024 03:22:13
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges. IBM X-Force ID: 134067.
CVE-2017-1541
- EPSS 0.46%
- Published 04.10.2017 01:29:03
- Last modified 20.04.2025 01:37:25
A flaw in the AIX 5.3, 6.1, 7.1, and 7.2 JRE/SDK installp and updatep packages prevented the java.security, java.policy and javaws.policy files from being updated correctly. IBM X-Force ID: 130809.
CVE-2016-8944
- EPSS 0.05%
- Published 15.02.2017 19:59:01
- Last modified 20.04.2025 01:37:25
IBM AIX 7.1 and 7.2 allows a local user to open a file with a specially crafted argument that would crash the system. IBM APARs: IV91488, IV91487, IV91456, IV90234.
CVE-2016-8972
- EPSS 0.63%
- Published 15.02.2017 19:59:01
- Last modified 20.04.2025 01:37:25
IBM AIX 6.1, 7.1, and 7.2 could allow a local user to gain root privileges using a specially crafted command within the bellmail client. IBM APARs: IV91006, IV91007, IV91008, IV91010, IV91011.
CVE-2016-6079
- EPSS 2.05%
- Published 15.02.2017 19:59:00
- Last modified 20.04.2025 01:37:25
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges. IBM APARs: IV88658, IV87981, IV88419, IV87640, IV88053.
CVE-2017-1093
- EPSS 0.05%
- Published 02.02.2017 22:59:00
- Last modified 20.04.2025 01:37:25
IBM AIX 6.1, 7.1, and 7.2 could allow a local user to exploit a vulnerability in the bellmail binary to gain root privileges.
CVE-2016-3053
- EPSS 3.04%
- Published 01.02.2017 20:59:00
- Last modified 20.04.2025 01:37:25
IBM AIX contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges.
CVE-2016-6038
- EPSS 0.22%
- Published 26.09.2016 17:59:00
- Last modified 12.04.2025 10:46:40
Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote authenticated users to read arbitrary files via a crafted URL.
CVE-2016-0281
- EPSS 2.82%
- Published 08.08.2016 01:59:02
- Last modified 12.04.2025 10:46:40
The mustendd driver in IBM AIX 5.3, 6.1, 7.1, and 7.2 and VIOS 2.2.x, when the jumbo_frames feature is not enabled, allows remote attackers to cause a denial of service (FC1763 or FC5899 adapter crash) via crafted packets.