Known vulnerabilities in IBM Cloud Pak System - page 30

Software CPE: cpe:2.3:a:ibm_corporation:ibm_cloud_pak_system:*:*:*:*:*:*:*:*
Total vulnerabilities: 653
Public exploits: 48
Known exploited (KEV): 16
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Cloud Pak System IBM Cloud Pak System is affected by 653 known vulnerabilities: 8 critical, 80 high, 388 medium, 177 low Critical High Medium Low

Vulnerabilities (653)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU66528 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2021-29873
CWE-74 Medium
No
No
2.3.3.5 16.08.2022 SB2022081621
SB2022082225
SB2022091901
and 1 more
#VU63700 - Incorrect Regular Expression
CVE-2021-29060
CWE-185 Medium
No
No
2.3.3.5 26.05.2022 SB2021062147
SB2022052615
SB2022101430
and 4 more
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Available
No
2.3.3.5 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more
#VU61295 - Memory corruption
CVE-2022-23219
CWE-119 High
No
No
2.3.3.5 14.03.2022 SB2022031429
SB2022031430
SB2022031526
and 51 more
#VU61294 - Memory corruption
CVE-2022-23218
CWE-119 High
No
No
2.3.3.5 14.03.2022 SB2022031429
SB2022031430
SB2022031526
and 38 more
#VU61293 - Off-by-one Error
CVE-2021-3999
CWE-193 High
No
No
2.3.3.5 14.03.2022 SB2022031429
SB2022031430
SB2022031526
and 36 more
#VU61286 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-22720
CWE-444 Medium
No
No
2.3.3.5 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 56 more
#VU60834 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-23450
CWE-94 High
No
No
2.3.3.5 23.02.2022 SB2022022311
SB2022022312
SB2022031011
and 41 more
#VU60084 - Missing initialization of resource
CVE-2021-28167
CWE-909 Medium
No
No
- 27.01.2022 SB2021042158
SB2022102806
SB2022112426
and 15 more
#VU59966 - Integer overflow
CVE-2022-23852
CWE-190 High
No
No
2.3.3.5 25.01.2022 SB2022012504
SB2022012622
SB2022020902
and 58 more
#VU59645 - Integer overflow
CVE-2022-22822
CWE-190 High
No
No
2.3.3.5 17.01.2022 SB2022011711
SB2022011713
SB2022020902
and 59 more
#VU59643 - Integer overflow
CVE-2021-46143
CWE-190 High
No
No
2.3.3.5 17.01.2022 SB2022011711
SB2022011713
SB2022020902
and 58 more
#VU59642 - Resource exhaustion
CVE-2021-45960
CWE-400 Medium
No
No
2.3.3.5 17.01.2022 SB2022011711
SB2022011713
SB2022020902
and 56 more
#VU59056 - Memory corruption
CVE-2021-44790
CWE-119 Critical
Available
No
2.3.3.5 20.12.2021 SB2021122005
SB2021122021
SB2022010513
and 50 more
#VU59042 - Resource exhaustion
CVE-2021-44717
CWE-400 Medium
No
No
2.3.3.5 16.12.2021 SB2021121610
SB2021121646
SB2022031628
and 32 more
#VU55972 - Integer overflow
CVE-2021-35942
CWE-190 Medium
No
No
2.3.3.5 18.08.2021 SB2021081817
SB2021081818
SB2021100416
and 32 more
#VU54816 - Out-of-bounds read
CVE-2021-21995
CWE-125 Medium
No
No
2.3.3.4 13.07.2021 SB2021071366
SB2021071373
SB2021101003
and 2 more
#VU54814 - Improper Authentication
CVE-2021-21994
CWE-287 High
No
No
2.3.3.4 13.07.2021 SB2021071366
SB2021071373
SB2021101003
and 3 more
#VU50745 - Improper input validation
CVE-2021-23840
CWE-20 Medium
No
No
2.3.3.5 17.02.2021 SB2021021702
SB2021021817
SB2021022420
and 83 more
#VU50740 - NULL Pointer Dereference
CVE-2021-23841
CWE-476 Medium
No
No
2.3.3.5 17.02.2021 SB2021021702
SB2021021817
SB2021022420
and 66 more


Showing elements 581 - 600 out of 653