Known vulnerabilities in IBM Cloud Application Performance Management (APM) - page 13

Software CPE: cpe:2.3:a:ibm_corporation:apm:*:*:*:*:*:*:*:*
Total vulnerabilities: 504
Public exploits: 30
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Cloud Application Performance Management (APM) IBM Cloud Application Performance Management (APM) is affected by 504 known vulnerabilities: 2 critical, 125 high, 240 medium, 137 low Critical High Medium Low

Vulnerabilities (504)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU86345 - Resource exhaustion
CVE-2023-30448
CWE-400 Medium
No
No
8.1.4.0.4 12.02.2024 SB2024021220
SB2024021317
SB2024021318
and 11 more
#VU86342 - Resource exhaustion
CVE-2023-30445
CWE-400 Medium
No
No
8.1.4.0.4 12.02.2024 SB2024021220
SB2024021317
SB2024021318
and 11 more
#VU86341 - Resource exhaustion
CVE-2023-30449
CWE-400 Medium
No
No
8.1.4.0.4 12.02.2024 SB2024021220
SB2024021317
SB2024021318
and 11 more
#VU86340 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-27869
CWE-94 Medium
No
No
8.1.4.0.4 12.02.2024 SB2024021220
SB2024021317
SB2024021318
and 12 more
#VU86338 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-27868
CWE-94 Medium
No
No
8.1.4.0.4 12.02.2024 SB2024021220
SB2024021317
SB2024021318
and 12 more
#VU86336 - Resource exhaustion
CVE-2023-30446
CWE-400 Medium
No
No
8.1.4.0.4 12.02.2024 SB2024021220
SB2024021317
SB2024021318
and 11 more
#VU83241 - Information Exposure Through Log Files
CVE-2023-44483
CWE-532 Medium
No
No
8.1.4.0.15 17.11.2023 SB2023111724
SB2023111747
SB2023120143
and 76 more
#VU82140 - Improper input validation
CVE-2023-22067
CWE-20 Medium
No
No
8.1.4.0.15 17.10.2023 SB2023101797
SB2023101924
SB2023101990
and 117 more
#VU82141 - Improper input validation
CVE-2023-22081
CWE-20 Medium
No
No
8.1.4.0.15 17.10.2023 SB2023101797
SB2023101798
SB2023101905
and 187 more
#VU81946 - Insufficient Logging
CVE-2023-23487
CWE-778 Low
No
No
8.1.4.0.4 12.10.2023 SB2023101241
SB2024021220
SB2024021317
and 11 more
#VU81945 - Permissions, Privileges, and Access Controls
CVE-2023-27558
CWE-264 High
No
No
8.1.4.0.4 12.10.2023 SB2023101240
SB2024021220
SB2024021317
and 9 more
#VU81944 - Exposure of sensitive information to an unauthorized actor
CVE-2023-29256
CWE-200 Low
No
No
8.1.4.0.4 12.10.2023 SB2023101239
SB2024021220
SB2024021317
and 10 more
#VU81935 - Resource exhaustion
CVE-2023-30442
CWE-400 Medium
No
No
8.1.4.0.4 12.10.2023 SB2023101203
SB2024021220
SB2024021317
and 8 more
#VU81916 - Memory corruption
CVE-2023-30431
CWE-119 High
No
No
8.1.4.0.4 11.10.2023 SB2023101169
SB2024021220
SB2024021317
and 12 more
#VU78917 - Out-of-bounds write
CVE-2023-35012
CWE-787 Medium
No
No
8.1.4.0.4 03.08.2023 SB2023080324
SB2024021220
SB2024021317
and 8 more
#VU78916 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-27867
CWE-94 High
No
No
8.1.4.0.4 03.08.2023 SB2023080323
SB2024021220
SB2024021317
and 12 more
#VU70441 - Insufficient Verification of Data Authenticity
CVE-2021-37533
CWE-345 Low
No
No
8.1.4.0.15 20.12.2022 SB2022122007
SB2022123001
SB2023011876
and 82 more
#VU53973 - Improper input validation
CVE-2021-28169
CWE-20 Medium
No
No
8.1.4.0.15 09.06.2021 SB2021060910
SB2021061815
SB2021081922
and 36 more
#VU13529 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2017-7658
CWE-444 Low
No
No
8.1.4.0.15 02.07.2018 SB2018070205
SB2018082001
SB2020102711
and 17 more
#VU13527 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2017-7656
CWE-444 Low
No
No
8.1.4.0.15 30.06.2018 SB2018070205
SB2018082001
SB2022041923
and 17 more


Showing elements 241 - 260 out of 504