Known vulnerabilities in VMware Tanzu Application Service for VMs - page 12

Vendor: Broadcom
Software CPE: cpe:2.3:a:broadcom:vmware_tanzu_application_service_for_vms:*:*:*:*:*:*:*:*
Total vulnerabilities: 483
Public exploits: 18
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting VMware Tanzu Application Service for VMs VMware Tanzu Application Service for VMs is affected by 483 known vulnerabilities: 5 critical, 112 high, 201 medium, 165 low Critical High Medium Low

Vulnerabilities (483)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU75741 - Improper input validation
CVE-2023-1667
CWE-20 Medium
No
No
- 04.05.2023 SB2023050456
SB2023050501
SB2023052441
and 75 more
#VU75740 - Improper Authentication
CVE-2023-2283
CWE-287 High
No
No
- 04.05.2023 SB2023050456
SB2023050501
SB2023052441
and 84 more
#VU75486 - Improper input validation
CVE-2023-29007
CWE-20 Low
Available
No
2.11.39, 2.13.21, 3.0.11, 4.0.2 25.04.2023 SB2023042553
SB2023042610
SB2023042629
and 48 more
#VU75485 - Insufficient Verification of Data Authenticity
CVE-2023-25815
CWE-345 Low
No
No
2.11.39, 2.13.21, 3.0.11, 4.0.2 25.04.2023 SB2023042553
SB2023042610
SB2023042638
and 40 more
#VU75484 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-25652
CWE-59 Low
No
No
2.11.39, 2.13.21, 3.0.11, 4.0.2 25.04.2023 SB2023042553
SB2023042610
SB2023042629
and 48 more
#VU74197 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-28487
CWE-78 Low
No
No
- 30.03.2023 SB2023033028
SB2023033038
SB2023033039
and 28 more
#VU74196 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-28486
CWE-78 Low
No
No
- 30.03.2023 SB2023033028
SB2023033038
SB2023033039
and 31 more
#VU74007 - Incorrect Regular Expression
CVE-2023-28756
CWE-185 Medium
No
No
2.11.39, 2.13.21, 3.0.11, 4.0.2 24.03.2023 SB2023033146
SB2023050430
SB2023051746
and 33 more
#VU74004 - Incorrect Regular Expression
CVE-2023-28755
CWE-185 Medium
No
No
2.11.39, 2.11.44, 2.13.21, 2.13.26, 3.0.11, 3.0.16, 4.0.2, 4.0.8 24.03.2023 SB2023033146
SB2023042108
SB2023050430
and 41 more
#VU72719 - Double Free
CVE-2023-27320
CWE-415 Low
No
No
- 02.03.2023 SB2023030239
SB2023030240
SB2023033038
and 12 more
#VU72618 - Improper input validation
CVE-2023-24329
CWE-20 Medium
No
No
- 28.02.2023 SB2023022819
SB2023022822
SB2023030832
and 158 more
#VU72596 - Out-of-bounds read
CVE-2023-0800
CWE-125 Medium
No
No
2.11.36, 2.12.25, 2.13.18, 3.0.8, 4.0.0 27.02.2023 SB2023022727
SB2023022730
SB2023030644
and 30 more
#VU72595 - Out-of-bounds read
CVE-2023-0799
CWE-125 Medium
No
No
2.11.36, 2.12.25, 2.13.18, 3.0.8, 4.0.0 27.02.2023 SB2023022727
SB2023022730
SB2023030644
and 15 more
#VU72594 - Out-of-bounds read
CVE-2023-0798
CWE-125 Medium
No
No
2.11.36, 2.12.25, 2.13.18, 3.0.8, 4.0.0 27.02.2023 SB2023022727
SB2023022730
SB2023030644
and 16 more
#VU72593 - Out-of-bounds read
CVE-2023-0797
CWE-125 Medium
No
No
2.11.36, 2.12.25, 2.13.18, 3.0.8, 4.0.0 27.02.2023 SB2023022727
SB2023022730
SB2023030644
and 16 more
#VU72592 - Out-of-bounds read
CVE-2023-0796
CWE-125 Medium
No
No
2.11.36, 2.12.25, 2.13.18, 3.0.8, 4.0.0 27.02.2023 SB2023022727
SB2023022730
SB2023030644
and 16 more
#VU72591 - Out-of-bounds read
CVE-2023-0795
CWE-125 Medium
No
No
2.11.36, 2.12.25, 2.13.18, 3.0.8, 4.0.0 27.02.2023 SB2023022727
SB2023022730
SB2023030644
and 16 more
#VU66189 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-29154
CWE-22 Low
No
No
- 08.08.2022 SB2022080837
SB2022081645
SB2022081649
and 70 more
#VU64709 - Heap-based Buffer Overflow
CVE-2022-2207
CWE-122 Medium
No
No
- 27.06.2022 SB2022062719
SB2022071351
SB2022080610
and 17 more
#VU62025 - Memory corruption
CVE-2022-0729
CWE-119 High
No
No
- 08.04.2022 SB2022040826
SB2022040828
SB2022060635
and 9 more


Showing elements 221 - 240 out of 483