Known vulnerabilities in IBM Cloud Pak for Multicloud Management - page 6

Software CPE: cpe:2.3:a:ibm_corporation:cp-management:*:*:*:*:*:*:*:*
Total vulnerabilities: 345
Public exploits: 20
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Cloud Pak for Multicloud Management IBM Cloud Pak for Multicloud Management is affected by 345 known vulnerabilities: 8 critical, 97 high, 161 medium, 79 low Critical High Medium Low

Vulnerabilities (345)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU111985 - Improper Verification of Cryptographic Signature
CVE-2025-29775
CWE-347 Critical
No
No
2.3 FP11 27.06.2025 SB2025062706
SB2025063009
SB2025063018
and 1 more
#VU111978 - Improper Verification of Cryptographic Signature
CVE-2025-29774
CWE-347 Critical
No
No
2.3 FP11 26.06.2025 SB2025062652
SB2025063009
SB2025063018
and 1 more
#VU106882 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2025-24208
CWE-79 Medium
No
No
2.3 FP11 02.04.2025 SB20250402143
SB2025040107
SB20250402142
and 23 more
#VU105914 - Memory corruption
CVE-2024-54551
CWE-119 Low
No
No
2.3 FP11 21.03.2025 SB2025032103
SB2024073059
SB2024073048
and 27 more
#VU105258 - Exposure of sensitive information to an unauthorized actor
CVE-2024-54467
CWE-200 Medium
No
No
2.3 FP11 04.03.2025 SB2025030403
SB2024091702
SB2024091711
and 30 more
#VU101721 - Improper input validation
CVE-2024-54508
CWE-20 Low
No
No
2.3 FP11 11.12.2024 SB2024121199
SB20241211100
SB2024121203
and 29 more
#VU101720 - Improper input validation
CVE-2024-54502
CWE-20 Low
No
No
2.3 FP11 11.12.2024 SB2024121199
SB20241211100
SB2024121203
and 29 more
#VU101246 - Out-of-bounds write
CVE-2024-47615
CWE-787 High
No
No
2.3 FP11 04.12.2024 SB2024120472
SB2024121365
SB2024121366
and 26 more
#VU100995 - Memory corruption
CVE-2024-52531
CWE-119 Low
No
No
2.3 FP11 27.11.2024 SB2024111329
SB2024112738
SB2024112739
and 35 more
#VU100774 - Out-of-bounds read
CVE-2024-50612
CWE-125 Medium
No
No
2.3 FP11 21.11.2024 SB2024112116
SB2024112134
SB2024112135
and 16 more
#VU100445 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2024-52530
CWE-444 Medium
No
No
2.3 FP11 13.11.2024 SB2024111328
SB2024111330
SB2024111331
and 36 more
#VU89491 - Unrestricted Upload of File with Dangerous Type
CVE-2024-32002
CWE-434 High
Available
No
2.3 FP11 15.05.2024 SB2024051504
SB2024060720
SB2024060721
and 52 more
#VU89490 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-32004
CWE-94 High
No
No
2.3 FP11 15.05.2024 SB2024051503
SB2024060720
SB2024060721
and 51 more
#VU86757 - Heap-based Buffer Overflow
CVE-2023-6228
CWE-122 High
No
No
2.3 FP11 23.02.2024 SB2024022317
SB2024022331
SB2024022771
and 22 more
#VU82248 - Out-of-bounds read
CVE-2023-31122
CWE-125 Medium
No
No
2.3 FP11 19.10.2023 SB2023101942
SB2023101960
SB2023102101
and 43 more
#VU81451 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-46316
CWE-78 Medium
No
No
2.3 FP11 04.10.2023 SB2023100421
SB2023100425
SB2023100426
and 17 more
#VU81434 - Integer overflow
CVE-2023-43787
CWE-190 Low
No
No
2.3 FP11 03.10.2023 SB2023100341
SB2023100346
SB2023100347
and 42 more
#VU81433 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2023-43786
CWE-835 Low
No
No
2.3 FP11 03.10.2023 SB2023100341
SB2023100346
SB2023100347
and 43 more
#VU81432 - Out-of-bounds read
CVE-2023-43785
CWE-125 Low
No
No
2.3 FP11 03.10.2023 SB2023100341
SB2023100347
SB2023100423
and 37 more
#VU73915 - Out-of-bounds read
CVE-2022-4645
CWE-125 Medium
No
No
2.3 FP11 22.03.2023 SB2023032203
SB2023050981
SB2023042426
and 12 more


Showing elements 101 - 120 out of 345