Known vulnerabilities in Platform Automation Toolkit - page 6

Vendor: Broadcom
Software CPE: cpe:2.3:a:broadcom:platform_automation_toolkit:*:*:*:*:*:*:*:*
Total vulnerabilities: 138
Public exploits: 6
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Platform Automation Toolkit Platform Automation Toolkit is affected by 138 known vulnerabilities: 15 high, 73 medium, 50 low Critical High Medium Low

Vulnerabilities (138)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68829 - Resource Management Errors
CVE-2022-40304
CWE-399 Medium
No
No
4.4.30, 5.0.23 30.10.2022 SB2022103005
SB2022103006
SB2022103007
and 90 more
#VU68828 - Integer overflow
CVE-2022-40303
CWE-190 High
No
No
4.4.30, 5.0.23 30.10.2022 SB2022103005
SB2022103006
SB2022103007
and 88 more
#VU68376 - Integer overflow
CVE-2022-3515
CWE-190 High
No
No
4.0.13, 4.1.13, 4.2.8, 4.3.5 18.10.2022 SB2022101805
SB2022101807
SB2022101808
and 64 more
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
4.4.29, 5.0.22 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU63711 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-1664
CWE-22 Medium
No
No
4.4.29, 5.0.22 26.05.2022 SB2022052610
SB2022052613
SB2022052622
and 9 more
#VU63627 - Memory corruption
CVE-2021-36690
CWE-119 Low
No
No
4.4.29, 5.0.22 25.05.2022 SB2022050533
SB2022071831
SB2022092034
and 16 more
#VU63343 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-29155
CWE-89 High
No
No
4.4.29, 5.0.22 17.05.2022 SB2022051725
SB2022051731
SB2022051919
and 27 more
#VU63009 - Incorrect Implementation of Authentication Algorithm
CVE-2022-27782
CWE-303 Medium
No
No
4.4.29, 5.0.22 11.05.2022 SB2022051112
SB2022051136
SB2022051170
and 68 more
#VU63008 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-27781
CWE-835 Medium
No
No
4.4.29, 5.0.22 11.05.2022 SB2022051112
SB2022051136
SB2022051170
and 36 more
#VU63007 - Improper input validation
CVE-2022-27780
CWE-20 Low
No
No
4.4.29, 5.0.22 11.05.2022 SB2022051112
SB2022051136
SB2022051170
and 14 more
#VU62768 - Uncontrolled Memory Allocation
CVE-2022-1473
CWE-789 Low
No
No
4.4.29, 5.0.22 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 18 more
#VU62767 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2022-1434
CWE-300 Low
No
No
4.4.29, 5.0.22 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 10 more
#VU62766 - Security Features
CVE-2022-1343
CWE-254 Medium
No
No
4.4.29, 5.0.22 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 14 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Available
No
4.4.29, 5.0.22 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more
#VU62644 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27776
CWE-200 Low
No
No
4.4.29, 5.0.22 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 62 more
#VU62643 - Resource Management Errors
CVE-2022-27775
CWE-399 Low
No
No
4.4.29, 5.0.22 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 30 more
#VU62641 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27774
CWE-200 Medium
No
No
4.4.29, 5.0.22 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 57 more
#VU62640 - Improper Authentication
CVE-2022-22576
CWE-287 Medium
No
No
4.4.29, 5.0.22 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 60 more
#VU62258 - Untrusted Search Path
CVE-2022-24765
CWE-426 Low
No
No
4.4.29, 5.0.22 12.04.2022 SB2022041262
SB2022041264
SB2022041265
and 44 more
#VU20961 - Improper Validation of Certificate with Host Mismatch
CVE-2019-13050
CWE-297 Medium
No
No
4.4.29, 5.0.22 10.09.2019 SB2019062907
SB2019091018
SB2019081531
and 12 more


Showing elements 101 - 120 out of 138