Known vulnerabilities in IBM App Connect Enterprise - page 13
Vendor:
IBM Corporation
Software:
IBM App Connect Enterprise
Software CPE:
cpe:2.3:a:ibm_corporation:ibm_app_connect_enterprise:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
361
Public exploits:
34
Known exploited (KEV):
4
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
12.0.12.27
12.0.12.28
13.0.8.0
12.0.12.26
13.0.7.2
13.0.7.0
13.0.7.1
12.0.12.25
12.0.12.24
13.0.6.2
12.0.12.23
13.0.6.1
12.0.12.22
12.0.12.21
13.0.6.0
12.0.12.20
13.0.5.2
12.0.12.19
12.0.12.18
13.0.5.0
12.0.16
12.15.0
13.0.4.2
12.0.12.17
13.0.4.1
12.0.12.12
12.0.12.16
12.0.13
12.13.0
12.0.12.15
13.0.4.0
12.0.12
12.12.0
12.0.12.13
12.0.12.14
13.0.3.1
13.0.3.0
12.0.10
12.10.1
12.9.0
12.0.9
12.0.12.11
13.0.2.2
12.0.12.10
13.0.2.1
12.0.12.9
13.0.2.0
13.0.1.0
12.0.12.8
13.0.1.1
12.0.12.7
12.0.12.6
12.0.12.5
12.0.12.4
12.0.12.3
12.0.12.2
12.0.12.1
11.0.0.26
12.0.12.0
12.0.11.3
11.0.0.25
12.0.11.2
10.1.0.2
12.0.11.0
11.0.0.24
12.0.11.1
12.0.10.1
11.0.0.23
12.0.10.0
11.0.0.22
12.0.9.0
11.0.0.21
12.0.8.0
11.0.0.20
12.0.7.0
11.0.0.19
12.0.6.0
10.0.0.26
12.0.5.0
11.0.0.18
11.0.0.17
12.0.4.0
11.0.0.16
10.0.0.25
10.0.0.24
10.0.0.23
10.0.0.22
10.0.0.21
10.0.0.20
10.0.0.19
10.0.0.18
10.0.0.17
10.0.0.16
10.0.0.15
10.0.0.14
12.0.3.0
11.0.0.15
11.0.0.13
11.0.0.12
11.0.0.11
11.0.0.10
11.0.0.9
11.0.0.8
11.0.0.7
11.0.0.6
11.0.0.5
11.0.0.4
11.0.0.3
11.0.0.2
11.0.0.1
11.0.0.0
12.0.2.0
11.0.0.14
12.0.1.0
12.0.0.0
10.0.0.13
10.0.0.12
10.0.0.11
10.0.0.10
10.0.0.9
10.0.0.8
10.0.0.7
10.0.0.6
10.0.0.5
10.0.0.4
10.0.0.3
10.0.0.2
10.0.0.1
10.0.0.0
Vulnerabilities (361)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU78901 - Deserialization of Untrusted Data CVE-2022-40609 |
CWE-502 | High | 11.0.0.22, 12.0.9.0 | 03.08.2023 |
SB2023080307 SB2023080808 SB2023080809 and 56 more |
||
| #VU76906 - Out-of-bounds read CVE-2023-2597 |
CWE-125 | High | 11.0.0.21, 12.0.9.0 | 05.06.2023 |
SB2023060525 SB2023060705 SB2023060930 and 86 more |
||
| #VU76617 - Server-Side Request Forgery (SSRF) CVE-2023-28155 |
CWE-918 | Medium | 11.0.0.21, 12.0.9.0 | 30.05.2023 |
SB2023053012 SB2023053141 SB2023062120 and 17 more |
||
| #VU75593 - Improper input validation CVE-2023-26285 |
CWE-20 | Medium | - | 28.04.2023 |
SB2023042850 SB2023042853 SB2023071403 and 2 more |
||
| #VU75592 - Information Exposure Through Log Files CVE-2023-28950 |
CWE-532 | Low | - | 28.04.2023 |
SB2023042849 SB2023060211 SB2023071403 and 1 more |
||
| #VU75264 - Improper input validation CVE-2023-21939 |
CWE-20 | Medium | 11.0.0.21, 12.0.9.0 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 179 more |
||
| #VU75265 - Improper input validation CVE-2023-21938 |
CWE-20 | Low | 11.0.0.21, 12.0.9.0 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 181 more |
||
| #VU75266 - Improper input validation CVE-2023-21968 |
CWE-20 | Low | 11.0.0.21, 12.0.9.0 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 179 more |
||
| #VU75267 - Improper input validation CVE-2023-21937 |
CWE-20 | Low | 11.0.0.21, 12.0.9.0 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 184 more |
||
| #VU75260 - Improper input validation CVE-2023-21930 |
CWE-20 | Medium | 11.0.0.21, 12.0.9.0 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 191 more |
||
| #VU75261 - Improper input validation CVE-2023-21967 |
CWE-20 | Medium | 11.0.0.21, 12.0.9.0 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 189 more |
||
| #VU75262 - Improper input validation CVE-2023-21954 |
CWE-20 | Medium | 11.0.0.21, 12.0.9.0 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 166 more |
||
| #VU74270 - Improper Verification of Cryptographic Signature CVE-2023-22899 |
CWE-347 | Medium | 11.0.0.21, 12.0.8.0 | 31.03.2023 |
SB2023033140 SB2023040471 SB2023041871 and 6 more |
||
| #VU72400 - Permissions, Privileges, and Access Controls CVE-2023-23920 |
CWE-264 | Low | 11.0.0.21, 12.0.8.0 | 20.02.2023 |
SB2023022020 SB2023030129 SB2023030337 and 55 more |
||
| #VU71288 - Improper input validation CVE-2023-21830 |
CWE-20 | Medium | 11.0.0.21, 12.0.9.0 | 17.01.2023 |
SB2023011784 SB2023011785 SB2023012377 and 112 more |
||
| #VU71289 - Improper input validation CVE-2023-21843 |
CWE-20 | Low | 11.0.0.21, 12.0.9.0 | 17.01.2023 |
SB2023011784 SB2023011785 SB2023011882 and 146 more |
||
| #VU68844 - Type confusion CVE-2022-3676 |
CWE-843 | Medium | 11.0.0.21, 12.0.9.0 | 31.10.2022 |
SB2022103129 SB2022111110 SB2022111724 and 60 more |
||
| #VU68442 - Improper input validation CVE-2022-21619 |
CWE-20 | Low | 11.0.0.21, 12.0.9.0 | 18.10.2022 |
SB2022101901 SB2022101902 SB2022102012 and 140 more |
||
| #VU50139 - Incorrect Default Permissions CVE-2020-8908 |
CWE-276 | Low | 11.0.0.21, 12.0.9.0 | 11.12.2020 |
SB2020121114 SB2021031707 SB2021042104 and 62 more |
||
| #VU12886 - Uncontrolled Memory Allocation CVE-2018-10237 |
CWE-789 | Low | 11.0.0.21, 12.0.9.0 | 21.05.2018 |
SB2018052310 SB2018083005 SB2018092411 and 43 more |
Showing elements 241 - 260 out of 361