Known vulnerabilities in IBM Cloud Application Performance Management (APM) - page 3

Software CPE: cpe:2.3:a:ibm_corporation:apm:*:*:*:*:*:*:*:*
Total vulnerabilities: 504
Public exploits: 30
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Cloud Application Performance Management (APM) IBM Cloud Application Performance Management (APM) is affected by 504 known vulnerabilities: 2 critical, 125 high, 240 medium, 137 low Critical High Medium Low

Vulnerabilities (504)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU113112 - Improper input validation
CVE-2024-52903
CWE-20 Low
No
No
8.1.4.0.4 22.07.2025 SB2025072220
SB2025072221
SB2025072348
and 2 more
#VU113111 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-1493
CWE-362 Medium
No
No
8.1.4.0.4 22.07.2025 SB2025072219
SB2025072221
SB2025072348
and 2 more
#VU113110 - Allocation of Resources Without Limits or Throttling
CVE-2025-1000
CWE-770 Medium
No
No
8.1.4.0.4 22.07.2025 SB2025072218
SB2025072221
SB2025072348
and 3 more
#VU113108 - Missing release of memory after effective lifetime
CVE-2025-1992
CWE-401 Low
No
No
8.1.4.0.4 22.07.2025 SB2025072216
SB2025072221
SB2025072348
and 3 more
#VU113107 - Allocation of Resources Without Limits or Throttling
CVE-2025-0915
CWE-770 Medium
No
No
8.1.4.0.4 22.07.2025 SB2025072215
SB2025072221
SB2025072348
and 3 more
#VU111165 - Improper Access Control
CVE-2025-48734
CWE-284 Medium
No
No
8.1.4.0.18 16.06.2025 SB2025061643
SB2025061644
SB2025061645
and 141 more
#VU111137 - Out-of-bounds write
CVE-2025-1471
CWE-787 Medium
No
No
8.1.4.0.18 13.06.2025 SB2025061330
SB2025061331
SB2025062330
and 5 more
#VU111136 - NULL Pointer Dereference
CVE-2025-1470
CWE-476 Low
No
No
8.1.4.0.18 13.06.2025 SB2025061329
SB2025061331
SB2025062330
and 5 more
#VU110189 - Stack-based buffer overflow
CVE-2024-49350
CWE-121 Medium
No
No
8.1.4.0.4 04.06.2025 SB2025060418
SB2025072221
SB2025072348
and 3 more
#VU110188 - Uncontrolled Memory Allocation
CVE-2025-2518
CWE-789 Low
No
No
8.1.4.0.4 04.06.2025 SB2025060419
SB2025072221
SB2025072348
and 3 more
#VU110179 - Allocation of Resources Without Limits or Throttling
CVE-2025-3050
CWE-770 Low
No
No
8.1.4.0.4 03.06.2025 SB2025060328
SB2025072221
SB2025072348
and 3 more
#VU106977 - Deserialization of Untrusted Data
CVE-2025-30065
CWE-502 High
Available
No
8.1.4.0.4 04.04.2025 SB2025040410
SB2025053013
SB2025053029
and 8 more
#VU105112 - Resource exhaustion
CVE-2025-23184
CWE-400 Medium
No
No
8.1.4.0.18 28.02.2025 SB2025022807
SB2025030340
SB2025041017
and 40 more
#VU103769 - Resource exhaustion
CVE-2025-25193
CWE-400 Low
No
No
8.1.4.0.4 11.02.2025 SB2025021186
SB202502197190
SB2025030409
and 56 more
#VU100259 - Resource Management Errors
CVE-2024-47535
CWE-399 Low
No
No
8.1.4.0.4 12.11.2024 SB2024111299
SB2024122313
SB2025012061
and 79 more
#VU98436 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2024-31882
CWE-74 Low
No
No
8.1.4.0.4 14.10.2024 SB2024101426
SB2024101427
SB2024102434
and 6 more
#VU97712 - Incorrect Default Permissions
CVE-2024-23454
CWE-276 Low
No
No
8.1.4.0.4 26.09.2024 SB2024092604
SB20241108105
SB20241108106
and 14 more
#VU89220 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-30172
CWE-835 Medium
No
No
8.1.4.0.4 07.05.2024 SB2024050731
SB2024061019
SB20240611170
and 62 more
#VU89219 - Observable discrepancy
CVE-2024-30171
CWE-203 Medium
No
No
8.1.4.0.4 07.05.2024 SB2024050731
SB2024050734
SB2024061019
and 59 more
#VU89218 - Resource exhaustion
CVE-2024-29857
CWE-400 Medium
No
No
8.1.4.0.4 07.05.2024 SB2024050731
SB2024061019
SB20240611170
and 69 more


Showing elements 41 - 60 out of 504