Known vulnerabilities in IBM Cloud Application Performance Management (APM) - page 18

Software CPE: cpe:2.3:a:ibm_corporation:apm:*:*:*:*:*:*:*:*
Total vulnerabilities: 504
Public exploits: 30
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Cloud Application Performance Management (APM) IBM Cloud Application Performance Management (APM) is affected by 504 known vulnerabilities: 2 critical, 125 high, 240 medium, 137 low Critical High Medium Low

Vulnerabilities (504)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU69512 - Deserialization of Untrusted Data
CVE-2020-10650
CWE-502 High
No
No
8.1.4.0.14 23.11.2022 SB2020030909
SB2022112310
SB2023012310
and 12 more
#VU61799 - Out-of-bounds write
CVE-2020-36518
CWE-787 Medium
No
No
8.1.4.0.14 01.04.2022 SB2022040113
SB2022040114
SB2022040115
and 147 more
#VU49371 - Deserialization of Untrusted Data
CVE-2020-36183
CWE-502 High
No
No
8.1.4.0.14 07.01.2021 SB2021011105
SB2021042826
SB2021050708
and 15 more
#VU49377 - Deserialization of Untrusted Data
CVE-2020-36189
CWE-502 High
No
No
8.1.4.0.14 07.01.2021 SB2021011105
SB2021042826
SB2021050708
and 17 more
#VU29129 - Deserialization of Untrusted Data
CVE-2020-14060
CWE-502 High
No
No
8.1.4.0.14 18.06.2020 SB2020061806
SB2020070320
SB2020073033
and 15 more
#VU27031 - Deserialization of Untrusted Data
CVE-2020-11619
CWE-502 High
No
No
8.1.4.0.14 20.04.2020 SB2020030909
SB2020052628
SB2020073033
and 15 more
#VU26489 - Deserialization of Untrusted Data
CVE-2020-11112
CWE-502 High
No
No
8.1.4.0.14 01.04.2020 SB2020030909
SB2020042318
SB2020073033
and 16 more
#VU26488 - Deserialization of Untrusted Data
CVE-2020-11111
CWE-502 High
No
No
8.1.4.0.14 31.03.2020 SB2020030909
SB2020042318
SB2020073033
and 16 more
#VU25834 - Deserialization of Untrusted Data
CVE-2019-14893
CWE-502 High
No
No
8.1.4.0.14 09.03.2020 SB2020030911
SB2020031901
SB2022060909
and 15 more
#VU25833 - Deserialization of Untrusted Data
CVE-2019-14892
CWE-502 High
No
No
8.1.4.0.14 09.03.2020 SB2020030911
SB2020031901
SB2022060909
and 16 more
#VU25832 - Deserialization of Untrusted Data
CVE-2020-9548
CWE-502 High
Available
No
8.1.4.0.14 09.03.2020 SB2020030909
SB2020073033
SB2022060909
and 14 more
#VU25469 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-8840
CWE-94 Medium
Available
No
8.1.4.0.14 19.02.2020 SB2020021921
SB2020022615
SB2020061106
and 18 more
#VU21135 - Exposure of sensitive information to an unauthorized actor
CVE-2019-14540
CWE-200 Medium
Available
No
8.1.4.0.14 16.09.2019 SB2019091616
SB2019100716
SB2019102422
and 23 more
#VU19943 - Deserialization of Untrusted Data
CVE-2018-12023
CWE-502 Medium
No
No
8.1.4.0.14 06.08.2019 SB2019052407
SB2019091718
SB2019092703
and 20 more
#VU19937 - Exposure of sensitive information to an unauthorized actor
CVE-2019-14439
CWE-200 Medium
No
No
8.1.4.0.14 06.08.2019 SB2019073015
SB2019100716
SB2019102422
and 16 more
#VU18961 - Exposure of sensitive information to an unauthorized actor
CVE-2019-12814
CWE-200 Medium
No
No
8.1.4.0.14 02.07.2019 SB2019062606
SB2019092703
SB2019100116
and 25 more
#VU17779 - Improper input validation
CVE-2018-19361
CWE-20 High
No
No
8.1.4.0.14 19.02.2019 SB2018121501
SB2019052407
SB2019091718
and 23 more
#VU17777 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2018-14720
CWE-611 Low
No
No
8.1.4.0.14 19.02.2019 SB2018121501
SB2019052407
SB2019092703
and 21 more
#VU17776 - Server-Side Request Forgery (SSRF)
CVE-2018-14721
CWE-918 Low
No
No
8.1.4.0.14 19.02.2019 SB2018121501
SB2019052407
SB2019092703
and 23 more
#VU9607 - Improper input validation
CVE-2017-15095
CWE-20 High
No
No
8.1.4.0.14 08.12.2017 SB2017121101
SB2017111609
SB2018051424
and 28 more


Showing elements 341 - 360 out of 504