Known vulnerabilities in IBM Cloud Pak for Multicloud Management - page 17

Software CPE: cpe:2.3:a:ibm_corporation:cp-management:*:*:*:*:*:*:*:*
Total vulnerabilities: 345
Public exploits: 20
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Cloud Pak for Multicloud Management IBM Cloud Pak for Multicloud Management is affected by 345 known vulnerabilities: 8 critical, 97 high, 161 medium, 79 low Critical High Medium Low

Vulnerabilities (345)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU79630 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-24439
CWE-94 High
No
No
2.3.8 16.08.2023 SB2022120650
SB20230816235
SB2023082070
and 12 more
#VU74606 - Improper Control of Dynamically-Managed Code Resources
CVE-2023-29017
CWE-913 High
Available
No
2.3.8 10.04.2023 SB2023041004
SB2023041839
SB2023042019
and 9 more
#VU71577 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-46175
CWE-94 Medium
No
No
2.3.8 26.01.2023 SB2023012644
SB2023012645
SB2023013117
and 44 more
#VU69392 - Resource exhaustion
CVE-2022-45061
CWE-400 Medium
No
No
2.3.8 16.11.2022 SB2022111650
SB2022112824
SB2022112856
and 125 more
#VU65749 - Improper Verification of Cryptographic Signature
CVE-2022-24771
CWE-347 Medium
No
No
2.3.5 25.07.2022 SB2022072517
SB2022082512
SB2022100554
and 8 more
#VU64805 - Improper input validation
CVE-2021-43565
CWE-20 Medium
No
No
2.3.5 29.06.2022 SB2021120347
SB2022062928
SB2022072127
and 39 more
#VU64269 - Integer overflow
CVE-2022-28327
CWE-190 Low
No
No
2.3.5 14.06.2022 SB2022041004
SB2022061422
SB2022061506
and 90 more
#VU64266 - Buffer overflow
CVE-2022-24675
CWE-120 Low
No
No
2.3.5 14.06.2022 SB2022041004
SB2022061422
SB2022061511
and 88 more
#VU61668 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0536
CWE-200 Low
No
No
2.3.5 28.03.2022 SB2022032841
SB2022032843
SB2022042561
and 27 more
#VU58977 - Deserialization of Untrusted Data
CVE-2021-4104
CWE-502 Medium
No
No
2.3.5 15.12.2021 SB2021121507
SB2021121647
SB2021121720
and 119 more
#VU58114 - Missing Encryption of Sensitive Data
CVE-2021-23222
CWE-311 Medium
No
No
2.3.5 11.11.2021 SB2021111139
SB2021111708
SB2021111709
and 29 more
#VU58113 - Missing Encryption of Sensitive Data
CVE-2021-23214
CWE-311 Medium
No
No
2.3.5 11.11.2021 SB2021111139
SB2021111708
SB2021111709
and 34 more
#VU54910 - Uncontrolled Recursion
CVE-2021-31525
CWE-674 Medium
No
No
- 15.07.2021 SB2021071514
SB2021052725
SB2021071515
and 39 more
#VU53004 - Use After Free
CVE-2021-22904
CWE-416 Medium
No
No
- 10.05.2021 SB2021051012
SB2021061020
SB2022062023
and 2 more
#VU53002 - Use After Free
CVE-2021-22902
CWE-416 Medium
No
No
- 10.05.2021 SB2021051011
SB2022091605
#VU53001 - Exposure of sensitive information to an unauthorized actor
CVE-2021-22885
CWE-200 Medium
No
No
- 10.05.2021 SB2021051012
SB2021061020
SB2021051939
and 4 more
#VU52337 - Insecure inherited permissions
CVE-2021-23998
CWE-277 Medium
No
No
2.3.21 19.04.2021 SB2021041919
SB2021041920
SB2021042212
and 23 more
#VU52333 - Out-of-bounds write
CVE-2021-23994
CWE-787 High
No
No
2.3.21 19.04.2021 SB2021041919
SB2021041920
SB2021042212
and 22 more
#VU50046 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2021-3115
CWE-78 High
No
No
2.3.1 26.01.2021 SB2021012714
SB2021012715
SB20210120131
and 10 more
#VU50047 - Incorrect Calculation
CVE-2021-3114
CWE-682 Medium
No
No
2.3.1 26.01.2021 SB2021012714
SB2021012715
SB20210120130
and 40 more


Showing elements 321 - 340 out of 345