Known vulnerabilities in IBM DataPower Gateway - page 8

Software CPE: cpe:2.3:a:ibm_corporation:ibm_datapower_gateway:*:*:*:*:*:*:*:*
Total vulnerabilities: 430
Public exploits: 19
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM DataPower Gateway IBM DataPower Gateway is affected by 430 known vulnerabilities: 1 critical, 23 high, 88 medium, 318 low Critical High Medium Low

Vulnerabilities (430)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU117483 - Improper input validation
CVE-2025-53066
CWE-20 Medium
No
No
10.5.0.20, 10.6.0.8, 10.6.6.0 22.10.2025 SB20251022107
SB20251022108
SB20251022109
and 118 more
#VU117484 - Improper input validation
CVE-2025-53057
CWE-20 Medium
No
No
10.5.0.20, 10.6.0.8, 10.6.6.0 22.10.2025 SB20251022107
SB20251022108
SB20251022109
and 121 more
#VU115167 - Allocation of Resources Without Limits or Throttling
CVE-2025-58754
CWE-770 Medium
Available
No
10.5.0.19, 10.6.0.7, 10.6.5.0 12.09.2025 SB2025091204
SB2025100104
SB2025100912
and 51 more
#VU112941 - Improper input validation
CVE-2025-30754
CWE-20 Medium
No
No
10.5.0.19, 10.6.0.7, 10.6.5.0 16.07.2025 SB2025071686
SB2025071692
SB2025071783
and 108 more
#VU112936 - Improper input validation
CVE-2025-50059
CWE-20 High
No
No
10.5.0.19, 10.6.0.7, 10.6.5.0 16.07.2025 SB2025071686
SB2025071687
SB2025071688
and 54 more
#VU109844 - Untrusted Search Path
CVE-2025-4802
CWE-426 Low
No
No
10.6.6.0 27.05.2025 SB2025052725
SB2025052735
SB2025052910
and 36 more
#VU101103 - NULL Pointer Dereference
CVE-2024-53113
CWE-476 Low
No
No
10.6.5.0 03.12.2024 SB2024120309
SB20250115100
SB2025011731
and 42 more
#VU100611 - Missing release of memory after effective lifetime
CVE-2024-50302
CWE-401 Medium
No
Exploited
10.6.5.0 19.11.2024 SB2024111922
SB2024112401
SB2024121358
and 128 more
#VU99191 - Memory corruption
CVE-2024-49885
CWE-119 Low
No
No
10.6.6.0 22.10.2024 SB20241022303
SB2024112952
SB202502197151
and 15 more
#VU99178 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-49935
CWE-362 Low
No
No
10.6.6.0 22.10.2024 SB20241022290
SB2024121065
SB2024121067
and 48 more
#VU99149 - Resource Management Errors
CVE-2024-49954
CWE-399 Low
No
No
10.6.6.0 22.10.2024 SB20241022261
SB2024110892
SB2024110894
and 37 more
#VU99148 - Resource Management Errors
CVE-2024-49927
CWE-399 Low
No
No
10.6.6.0 22.10.2024 SB20241022260
SB2024110167
SB2024110169
and 46 more
#VU99076 - Error Handling
CVE-2024-49882
CWE-388 Low
Available
No
10.6.6.0 22.10.2024 SB20241022188
SB2024110892
SB2024110893
and 51 more
#VU98906 - Out-of-bounds read
CVE-2024-49933
CWE-125 Low
No
No
10.6.6.0 22.10.2024 SB2024102212
SB2024110892
SB2024110894
and 37 more
#VU98903 - Out-of-bounds read
CVE-2024-49886
CWE-125 Low
No
No
10.6.6.0 22.10.2024 SB2024102209
SB2024110892
SB2024110894
and 35 more
#VU98868 - Use After Free
CVE-2024-49889
CWE-416 Low
No
No
10.6.6.0 21.10.2024 SB2024102173
SB2024110892
SB2024110893
and 27 more
#VU98867 - Use After Free
CVE-2024-49884
CWE-416 Low
No
No
10.6.6.0 21.10.2024 SB2024102172
SB2024110892
SB2024110893
and 61 more
#VU96114 - Out-of-bounds read
CVE-2024-42292
CWE-125 Low
No
No
10.6.5.0 19.08.2024 SB2024081956
SB2024090671
SB2024091077
and 41 more
#VU22494 - Heap-based Buffer Overflow
CVE-2019-17543
CWE-122 High
No
No
10.5.0.19, 10.6.0.7 04.11.2019 SB2019110405
SB2019102917
SB2019102918
and 12 more
#VU32567 - Cryptographic Issues
CVE-2013-6401
CWE-310 Medium
No
No
10.5.0.20, 10.6.0.8, 10.6.6.0 21.03.2014 SB2014032101
SB2014031327
SB2014021304
and 1 more


Showing elements 141 - 160 out of 430