Known vulnerabilities in IBM Cloud Pak System 2.3.3.7 Ifix1

Version: 2.3.3.7 Ifix1
Software CPE: cpe:2.3:a:ibm_corporation:ibm_cloud_pak_system:*:*:*:*:*:*:*:*
Total vulnerabilities: 40
Public exploits: 5
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting IBM Cloud Pak System version 2.3.3.7 Ifix1 IBM Cloud Pak System 2.3.3.7 Ifix1 is affected by 40 vulnerabilities: 22 medium, 18 low Critical High Medium Low

Vulnerabilities (40)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU113110 - Allocation of Resources Without Limits or Throttling
CVE-2025-1000
CWE-770 Medium
No
No
- 22.07.2025 SB2025072218
SB2025072221
SB2025072348
and 3 more
#VU113108 - Missing release of memory after effective lifetime
CVE-2025-1992
CWE-401 Low
No
No
- 22.07.2025 SB2025072216
SB2025072221
SB2025072348
and 3 more
#VU113107 - Allocation of Resources Without Limits or Throttling
CVE-2025-0915
CWE-770 Medium
No
No
- 22.07.2025 SB2025072215
SB2025072221
SB2025072348
and 3 more
#VU112106 - Memory corruption
CVE-2025-52999
CWE-119 Medium
No
No
2.3.6.0 02.07.2025 SB2025070257
SB2025070261
SB2025070262
and 43 more
#VU110188 - Uncontrolled Memory Allocation
CVE-2025-2518
CWE-789 Low
No
No
- 04.06.2025 SB2025060419
SB2025072221
SB2025072348
and 3 more
#VU110179 - Allocation of Resources Without Limits or Throttling
CVE-2025-3050
CWE-770 Low
No
No
- 03.06.2025 SB2025060328
SB2025072221
SB2025072348
and 3 more
#VU104172 - Uncontrolled Memory Allocation
CVE-2024-45663
CWE-789 Medium
No
No
2.3.6.0 25.02.2025 SB2025022520
SB2025022521
SB2025031921
and 6 more
#VU104124 - Allocation of Resources Without Limits or Throttling
CVE-2024-41762
CWE-770 Medium
No
No
2.3.6.0 21.02.2025 SB2025022118
SB2025022521
SB2025031921
and 6 more
#VU104123 - Allocation of Resources Without Limits or Throttling
CVE-2024-41761
CWE-770 Low
No
No
2.3.6.0 21.02.2025 SB2025022117
SB2025022521
SB2025031921
and 6 more
#VU104121 - Information Exposure Through Log Files
CVE-2024-40679
CWE-532 Low
No
No
2.3.6.0 21.02.2025 SB2025022116
SB2025022521
SB2025031921
and 7 more
#VU104120 - Uncontrolled Memory Allocation
CVE-2024-37071
CWE-789 Low
No
No
2.3.6.0 21.02.2025 SB2025022115
SB2025022521
SB2025031921
and 6 more
#VU103290 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2024-12801
CWE-611 Medium
No
No
2.3.6.0 24.01.2025 SB2025012460
SB2025012488
SB2025012495
and 23 more
#VU103289 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-12798
CWE-94 Low
No
No
2.3.6.0 24.01.2025 SB2025012460
SB2025012488
SB2025012495
and 28 more
#VU101344 - Integer overflow
CVE-2024-10917
CWE-190 Low
No
No
2.3.6.0 09.12.2024 SB2024120927
SB2024120928
SB2024120929
and 66 more
#VU98644 - Improper input validation
CVE-2024-21235
CWE-20 Medium
No
No
2.3.6.0 15.10.2024 SB20241015214
SB20241015215
SB20241015216
and 129 more
#VU98645 - Improper input validation
CVE-2024-21210
CWE-20 Low
No
No
2.3.6.0 15.10.2024 SB20241015215
SB2024101668
SB2024101672
and 122 more
#VU98647 - Improper input validation
CVE-2024-21208
CWE-20 Low
No
No
2.3.6.0 15.10.2024 SB20241015214
SB20241015215
SB20241015216
and 139 more
#VU98648 - Improper input validation
CVE-2024-21217
CWE-20 Low
No
No
2.3.6.0 15.10.2024 SB20241015214
SB20241015215
SB20241015216
and 142 more
#VU97712 - Incorrect Default Permissions
CVE-2024-23454
CWE-276 Low
No
No
- 26.09.2024 SB2024092604
SB20241108105
SB20241108106
and 14 more
#VU87326 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-24786
CWE-835 Medium
No
No
2.3.6.0 11.03.2024 SB2024031115
SB2024031435
SB2024031555
and 134 more


Showing elements 1 - 20 out of 40