Aix
Vendor:
First CVE: Mar 1, 1992 · Active for 34 years
836
Total CVEs
More Total CVEs than 100% of tracked products
24.6
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
6.6
Avg CVSS
Higher Avg CVSS than 32% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Aix over time
Volume of CVEsAvg CVSS Base Score
First CVE
Mar 1, 1992
34 years ago
Most Recent CVE
Jun 22, 2026
35 days ago
CVE Severity & Scoring
Aix836 CVEs
45%
45%
All CVEs352,785 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local118 (14.1%)
Network350 (41.9%)
Unknown360 (43.1%)
Physical0 (0.0%)
Adjacent Network8 (1.0%)
Attack Complexity
Low449 (53.7%)
High27 (3.2%)
Unknown360 (43.1%)
User Interaction
None390 (46.7%)
Unknown360 (43.1%)
Required86 (10.3%)
Privileges Required
Low257 (30.7%)
High22 (2.6%)
None197 (23.6%)
Unknown360 (43.1%)
Top CVEs
Signals from CVEs in this product scope (836 CVEs).
836 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2001-0797HIGH Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as | Dec 12, 2001 | 10.0 | 90 | NO | YES |
CVE-2009-3699HIGH Stack-based buffer overflow in libcsa.a (aka the calendar daemon library) in IBM AIX 5.x through 5.3.10 and 6.x through 6.1.3, and VIOS 2.1 and earlier, allows remote attackers to | Oct 15, 2009 | 10.0 | 79 | NO | YES |
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain clear | Oct 15, 2014 | 3.4 | 78 | NO | YES |
CVE-2003-0694HIGH The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c. | Oct 6, 2003 | 10.0 | 73 | NO | YES |
CVE-1999-0046HIGH Buffer overflow of rlogin program using TERM environmental variable. | Feb 6, 1997 | 10.0 | 67 | NO | YES |
CVE-1999-0128MEDIUM Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death. | Dec 18, 1996 | 5.0 | 63 | NO | YES |
CVE-2001-0554HIGH Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You Th | Aug 14, 2001 | 10.0 | 60 | NO | YES |
CVE-1999-0513MEDIUM ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service. | Jan 5, 1998 | 5.0 | 60 | NO | YES |
CVE-2009-2727HIGH Stack-based buffer overflow in the _tt_internal_realpath function in the ToolTalk library (libtt.a) in IBM AIX 5.2.0, 5.3.0, 5.3.7 through 5.3.10, and 6.1.0 through 6.1.3, when the | Aug 10, 2009 | 9.3 | 59 | NO | YES |
CVE-1999-0009HIGH Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases. | Apr 8, 1998 | 10.0 | 54 | NO | YES |
Exploit Exposure
Signals from CVEs in this product scope (836 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
7 CVEs
0.8% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
77 CVEs
9.2% of CVEs· 89th percentile
Social Chatter
Signals from CVEs in this product scope (836 CVEs).
Media Mentions
Signals from CVEs in this product scope (836 CVEs).
Top CNAs Publishing CVEs For Aix
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 7.3.4 | 7 | 5.4 | 0.4% | 0 | 0 |
| 7.3.3 | 1 | 8.4 | 0.2% | 0 | 0 |
| 7.3.0.0 | 3 | 6.5 | 0.5% | 0 | 0 |
| 7.3.0 | 1 | 8.6 | 1.2% | 0 | 0 |
| 7.3 | 46 | 6.8 | 0.3% | 0 | 1 |
| 7.2.5.100 | 2 | 7.0 | 0.7% | 0 | 0 |
| 7.2.5.1 | 2 | 7.0 | 0.7% | 0 | 0 |
| 7.2.5.0 | 3 | 6.5 | 0.5% | 0 | 0 |
| 7.2.5 | 1 | 4.7 | 0.4% | 0 | 0 |
| 7.2.4.0 | 1 | 5.5 | 0.2% | 0 | 0 |
| 7.2.4 | 1 | 4.7 | 0.4% | 0 | 0 |
| 7.2.3 | 1 | 4.7 | 0.4% | 0 | 0 |
| 7.2.2 | 1 | 9.1 | 2.7% | 0 | 0 |
| 7.2.1 | 1 | 9.1 | 2.7% | 0 | 0 |
| 7.2.0 | 3 | 5.7 | 0.3% | 0 | 0 |
| 7.2 | 63 | 6.8 | 0.5% | 0 | 3 |
| 7.1.5 | 2 | 6.9 | 1.5% | 0 | 0 |
| 7.1.4 | 1 | 9.1 | 2.7% | 0 | 0 |
| 7.1.3 | 1 | 9.1 | 2.7% | 0 | 0 |
| 7.1.2 | 2 | 7.8 | 2.3% | 0 | 0 |