Known vulnerabilities in VMware Tanzu Application Service for VMs - page 9

Vendor: Broadcom
Software CPE: cpe:2.3:a:broadcom:vmware_tanzu_application_service_for_vms:*:*:*:*:*:*:*:*
Total vulnerabilities: 483
Public exploits: 18
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting VMware Tanzu Application Service for VMs VMware Tanzu Application Service for VMs is affected by 483 known vulnerabilities: 5 critical, 112 high, 201 medium, 165 low Critical High Medium Low

Vulnerabilities (483)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU78668 - Exposure of sensitive information to an unauthorized actor
CVE-2023-20891
CWE-200 Medium
No
No
2.11.42, 2.13.24, 3.0.14, 4.0.5 26.07.2023 SB2023072604
#VU78572 - Use After Free
CVE-2023-20593
CWE-416 Low
No
No
- 24.07.2023 SB2023072428
SB2023072429
SB2023072553
and 134 more
#VU77252 - NULL Pointer Dereference
CVE-2023-2953
CWE-476 Medium
No
No
3.0.14, 4.0.5 13.06.2023 SB2023061366
SB2023061417
SB2023061418
and 59 more
#VU76651 - Resource Management Errors
CVE-2023-2650
CWE-399 Medium
No
No
- 30.05.2023 SB2023053040
SB2023053044
SB2023053045
and 131 more
#VU75283 - Improper input validation
CVE-2023-21920
CWE-20 Medium
No
No
2.3.3, 2.4.0, 2.5.0, 2.6.0, 2.7.0, 2.8.0, 2.9.0, 2.10.0, 2.11.0, 2.12.0, 2.13.0, 3.0.0, 4.0.0 18.04.2023 SB20230418162
SB2023050821
SB2023063041
and 15 more
#VU75270 - Improper input validation
CVE-2023-21912
CWE-20 Medium
No
No
2.3.3, 2.4.0, 2.5.0, 2.6.0, 2.7.0, 2.8.0, 2.9.0, 2.10.0, 2.11.0, 2.12.0, 2.13.0, 3.0.0, 4.0.0 18.04.2023 SB20230418162
SB2023050821
SB2023050824
and 11 more
#VU75273 - Improper input validation
CVE-2023-21929
CWE-20 Medium
No
No
2.3.3, 2.4.0, 2.5.0, 2.6.0, 2.7.0, 2.8.0, 2.9.0, 2.10.0, 2.11.0, 2.12.0, 2.13.0, 3.0.0, 4.0.0 18.04.2023 SB20230418162
SB2023050821
SB2023063041
and 16 more
#VU75275 - Improper input validation
CVE-2023-21911
CWE-20 Medium
No
No
2.3.3, 2.4.0, 2.5.0, 2.6.0, 2.7.0, 2.8.0, 2.9.0, 2.10.0, 2.11.0, 2.12.0, 2.13.0, 3.0.0, 4.0.0 18.04.2023 SB20230418162
SB2023050821
SB2023063041
and 16 more
#VU75277 - Improper input validation
CVE-2023-21919
CWE-20 Medium
No
No
2.3.3, 2.4.0, 2.5.0, 2.6.0, 2.7.0, 2.8.0, 2.9.0, 2.10.0, 2.11.0, 2.12.0, 2.13.0, 3.0.0, 4.0.0 18.04.2023 SB20230418162
SB2023050821
SB2023063041
and 15 more
#VU75141 - Memory corruption
CVE-2023-29491
CWE-119 Low
No
No
- 14.04.2023 SB2023041454
SB2023052328
SB2023052346
and 132 more
#VU69337 - Integer overflow
CVE-2022-42898
CWE-190 Medium
No
No
- 15.11.2022 SB2022111530
SB2022111610
SB2022111621
and 123 more
#VU64274 - Out-of-bounds read
CVE-2022-29458
CWE-125 Medium
No
No
- 14.06.2022 SB2022061418
SB2022061419
SB2022072842
and 29 more
#VU60784 - Out-of-bounds read
CVE-2022-0393
CWE-125 Low
No
No
- 22.02.2022 SB2022022221
SB2022040828
SB2022082104
and 8 more
#VU60782 - Heap-based Buffer Overflow
CVE-2022-0407
CWE-122 High
No
No
- 22.02.2022 SB2022022221
SB2022062022
SB2022082104
and 11 more
#VU60773 - NULL Pointer Dereference
CVE-2022-0696
CWE-476 Low
No
No
- 22.02.2022 SB2022022221
SB2022040828
SB2022062022
and 13 more
#VU60767 - Heap-based Buffer Overflow
CVE-2022-0158
CWE-122 High
No
No
- 22.02.2022 SB2022022220
SB2022022221
SB2022031433
and 7 more
#VU57577 - Out-of-bounds write
CVE-2021-39537
CWE-787 High
No
No
- 21.10.2021 SB2021102119
SB2022061419
SB2021102025
and 18 more
#VU21793 - Buffer over-read
CVE-2019-17595
CWE-126 Medium
No
No
- 15.10.2019 SB2019101515
SB2019112401
SB2019112402
and 23 more
#VU21792 - Heap-based Buffer Overflow
CVE-2019-17594
CWE-122 High
No
No
- 15.10.2019 SB2019101515
SB2019112401
SB2019112402
and 23 more
#VU17350 - Reachable Assertion
CVE-2018-20217
CWE-617 Low
No
No
- 01.02.2019 SB2019012517
SB2019011813
SB2019090310
and 9 more


Showing elements 161 - 180 out of 483