Known vulnerabilities in IBM Cloud Application Performance Management (APM) - page 20

Software CPE: cpe:2.3:a:ibm_corporation:apm:*:*:*:*:*:*:*:*
Total vulnerabilities: 504
Public exploits: 30
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Cloud Application Performance Management (APM) IBM Cloud Application Performance Management (APM) is affected by 504 known vulnerabilities: 2 critical, 125 high, 240 medium, 137 low Critical High Medium Low

Vulnerabilities (504)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU75498 - Improper input validation
CVE-2023-27559
CWE-20 Medium
No
No
8.1.4.0.4 25.04.2023 SB2023042561
SB2023050912
SB2023053014
and 8 more
#VU75497 - Resource Management Errors
CVE-2023-26022
CWE-399 Low
No
No
8.1.4.0.4 25.04.2023 SB2023042561
SB2023050912
SB2023053014
and 7 more
#VU75496 - Improper input validation
CVE-2023-26021
CWE-20 Medium
No
No
8.1.4.0.4 25.04.2023 SB2023042561
SB2023050912
SB2023053014
and 8 more
#VU75495 - Resource Management Errors
CVE-2023-27555
CWE-399 Low
No
No
8.1.4.0.4 25.04.2023 SB2023042561
SB2023050912
SB2023053014
and 7 more
#VU75494 - Improper input validation
CVE-2023-29255
CWE-20 Medium
No
No
8.1.4.0.4 25.04.2023 SB2023042561
SB2023050912
SB2023053014
and 7 more
#VU75493 - Permissions, Privileges, and Access Controls
CVE-2023-29257
CWE-264 Low
No
No
8.1.4.0.4 25.04.2023 SB2023042561
SB2023050912
SB2023053014
and 8 more
#VU75479 - Resource exhaustion
CVE-2023-25930
CWE-400 Medium
No
No
8.1.4.0.4 25.04.2023 SB2023042530
SB2023050912
SB2023053014
and 8 more
#VU72427 - Allocation of Resources Without Limits or Throttling
CVE-2023-24998
CWE-770 Medium
Available
No
8.1.4.0.14 20.02.2023 SB2023022046
SB2023022047
SB2023030917
and 202 more
#VU72075 - Insecure Temporary File
CVE-2023-0482
CWE-377 Low
No
No
8.1.4.0.14 08.02.2023 SB2023020877
SB2023033003
SB2023033004
and 36 more
#VU72060 - Information Exposure Through Log Files
CVE-2022-43930
CWE-532 Low
No
No
8.1.4.0.4 08.02.2023 SB2023020862
SB2023032013
SB2023060713
and 6 more
#VU72059 - Improper Privilege Management
CVE-2022-43927
CWE-269 Low
No
No
8.1.4.0.4 08.02.2023 SB2023020862
SB2023032013
SB2023060713
and 7 more
#VU70797 - Exposure of sensitive information to an unauthorized actor
CVE-2022-45787
CWE-200 Low
No
No
8.1.4.0.14 09.01.2023 SB2023010909
SB2023020878
SB2023031107
and 34 more
#VU70444 - Server-Side Request Forgery (SSRF)
CVE-2022-46364
CWE-918 Medium
No
No
8.1.4.0.14 20.12.2022 SB2022122009
SB2023011329
SB2023011707
and 67 more
#VU69670 - Improper input validation
CVE-2022-3509
CWE-20 Medium
No
No
8.1.4.0.14 29.11.2022 SB2022111433
SB2022112934
SB2023011787
and 58 more
#VU69293 - Improper input validation
CVE-2022-3171
CWE-20 Medium
No
No
8.1.4.0.14 14.11.2022 SB2022111433
SB2022111440
SB2022112934
and 105 more
#VU67948 - Resource exhaustion
CVE-2022-37734
CWE-400 Medium
No
No
8.1.4.0.14 05.10.2022 SB2022100553
SB2022100555
SB2022100650
and 19 more
#VU64197 - Improper Authentication
CVE-2022-22475
CWE-287 Low
No
No
8.1.4.0.14 13.06.2022 SB2022061307
SB2022061310
SB2022062218
and 26 more
#VU54394 - Incorrect Regular Expression
CVE-2020-28500
CWE-185 Medium
No
No
8.1.4.0.4 27.06.2021 SB2021062702
SB2021062703
SB2021090905
and 30 more
#VU53202 - Command injection
CVE-2021-23337
CWE-77 Medium
No
No
8.1.4.0.4 12.05.2021 SB2021021525
SB2021051230
SB2021062703
and 59 more
#VU41989 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-8203
CWE-94 Medium
No
No
8.1.4.0.4 10.08.2020 SB2020071548
SB2020122111
SB2021042308
and 31 more


Showing elements 381 - 400 out of 504