IBM
Security Scorecard
Score
25F
Total CVEs
299
Patch Rate
6%
19 patched
Avg Response
-
days to patch
Critical Gaps
38
exploitable, no detection
Severity Breakdown
Critical1
High144
Medium117
Low31
Patch Status
Patched19 (6%)
Partial/Workaround3 (1%)
Unpatched277 (93%)
CVEs (302)
| CVE ID | Title | Severity | Score | Days | Patch |
|---|---|---|---|---|---|
| CVE-2025-13211 | Aspera Orchestrator Denial of Service | MEDIUM | 5.3 | 3d | Unpatched |
| CVE-2025-36437 | IBM Planning Analytics Local | MEDIUM | 4.3 | 5d | Unpatched |
| CVE-2025-36015 | IBM Controller Denial of Service Vulnerability | MEDIUM | 6.5 | - | Partial |
| CVE-2025-36017 | IBM Controller Denial of Service Vulnerability | MEDIUM | 6.5 | 6d | Unpatched |
| CVE-2025-64650 | IBM Storage Defender Resiliency Service Denial-of-Service Vulnerability | MEDIUM | 6.5 | 6d | Unpatched |
| CVE-2025-12635 | IBM WebSphere Cross-Site Scripting Vulnerability | MEDIUM | 5.4 | 6d | Unpatched |
| CVE-2025-12832 | IBM InfoSphere Information Server SSRF Vulnerability | MEDIUM | 4.6 | 6d | Unpatched |
| CVE-2025-33111 | IBM Controller Vulnerability | MEDIUM | 4.3 | - | Partial |
| CVE-2024-45675 | IBM Informix Dynamic Server Vulnerability | HIGH | 8.4 | 11d | Unpatched |
| CVE-2025-36072 | IBM webMethods Integration Exploit | HIGH | 8.8 | 23d | Unpatched |