Known vulnerabilities in IBM DB2 11.1.4.4 iFix001 - page 2
Vendor:
IBM Corporation
Software:
IBM DB2
Version:
11.1.4.4 iFix001
Software CPE:
cpe:2.3:a:ibm_corporation:ibm_db2:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
33
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Vulnerabilities by Severity
12.1.4
11.5.6
11.5.5
12.1.3
12.1.2
12.1.0
5.2.0
5.1
4.7
4.5
4.0
3.5
11.1.4 FP7
12.1.1
5.0.3
5.0
11.1
4.8
11.5.9
-
4.6
11.5.7000.1973
11.5.8
10.5 FP11
9.7 FP11
1
11.1.4.3
11.1.4.2
11.1.4.1
11.5.7
11.1.4.7
8.0.7.5
7.0.11.0
11.5.7.0
11.5.6.0
11.5.5.1
11.5.5.0
11.5.4.0
11.5.0.0
11.1.4.6
11.1.4.5
11.1.4.4 iFix001
11.1.3.3
11.1.2.2 iFix002
11.1.2.2 iFix001
11.1.2.2
11.1.1.1 iFix001
11.1.1.1
10.5.0.11
10.1.0.3a
9.7.0.3a
9.5.0.6a
9.5.0.4a
9.5.0.3b
9.5.0.3a
9.5.0.2a
9.0.1.7a
9.0.1.6a
9.0.1.4a
9.0.1.3a
9.0.1.2a
9.7.0.9a
9.1.0.12
11.1 FP5
11.5
11.1.4.4
11.1.3.3 iFix002
10.5.0.10
11.1.3.3 iFix001
10.1.0.6
11.1 FP3
10.5.0.9
11.1 FP2
11.1 FP1
10.5.0.8
11.1.0.0
9.7.0.10
10.1.0.5
9.7.0.11
9.8.0.2
9.8.0.1
10.5.0.7
10.5.0.6
10.5.0.5
10.5.0.4
9.5.0.10
10.5.0.3
10.1.0.4
9.7.0.7
9.7.0.8
9.7.0.9
10.5.0.2
10.5.0.1
10.1.0.3
10.1.0.2
10.1.0.1
10.5
10.1
9.8.0.5
9.5.0.6
9.7.0.6
9.5.0.5
9.1.0.1
9.1.0.8
9.1.0.11
9.1.0.6
9.1.0.7
9.1.0.4
9.1.0.5
9.1.0.2
9.1.0.3
9.5.0.2
9.5.0.3
9.5.0.1
9.1.0.10
9.1.0.9
9.5.0.8
9.5.0.9
9.5.0.7
9.5.0.4
9.8.0.4
9.8.0.3
9.7.0.5
9.8
9.7.0.3
9.7.0.4
9.7.0.2
9.7.0.1
9.7
9.5.0.0
8.2 fixpack15
9.1.0.0
8.2
8.1.7b
8.1.8
8.1.9a
8.10
8.12
8.1.6c
8.0
8.1
8.1.4
8.2.0
8.2.1
8.1.8a
8.1.9
8.1.7
8.1.5
8.1.6
8.2.2
9.0
10.5.0.0
10.1.0.0
9.8.0.0
9.7.0.0
Vulnerabilities (33)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU64650 - Exposure of sensitive information to an unauthorized actor CVE-2022-22390 |
CWE-200 | Low | 9.7.0.11, 10.1.0.6, 10.5.0.11, 11.1.4.7, 11.5.7 | 24.06.2022 |
SB2022062419 SB2022082224 SB2023040617 |
||
| #VU60739 - Integer overflow CVE-2022-25315 |
CWE-190 | High | 9.7.0.11, 10.1.0.6, 10.5.0.11, 11.1.4.7 | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 99 more |
||
| #VU60738 - Integer overflow CVE-2022-25314 |
CWE-190 | Medium | 9.7.0.11, 10.1.0.6, 10.5.0.11, 11.1.4.7 | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 68 more |
||
| #VU60737 - Stack-based buffer overflow CVE-2022-25313 |
CWE-121 | High | 9.7.0.11, 10.1.0.6, 10.5.0.11, 11.1.4.7 | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 64 more |
||
| #VU60736 - Improper Control of Generation of Code ('Code Injection') CVE-2022-25235 |
CWE-94 | High | 9.7.0.11, 10.1.0.6, 10.5.0.11, 11.1.4.7 | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 106 more |
||
| #VU60733 - Improper input validation CVE-2022-25236 |
CWE-20 | Medium | 9.7.0.11, 10.1.0.6, 10.5.0.11, 11.1.4.7 | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 109 more |
||
| #VU58977 - Deserialization of Untrusted Data CVE-2021-4104 |
CWE-502 | Medium | 11.5.6.0, 11.5.7.0 | 15.12.2021 |
SB2021121507 SB2021121647 SB2021121720 and 119 more |
||
| #VU58816 - Improper Control of Generation of Code ('Code Injection') CVE-2021-44228 |
CWE-94 | Critical | 11.5.6.0, 11.5.7.0 | 10.12.2021 |
SB2021121003 SB2021121101 SB2021121201 and 338 more |
||
| #VU58798 - Permissions, Privileges, and Access Controls CVE-2021-20373 |
CWE-264 | Medium | 11.5.7.0 | 09.12.2021 |
SB2021120915 |
||
| #VU58797 - Exposure of sensitive information to an unauthorized actor CVE-2021-29752 |
CWE-200 | Low | 11.5.7.0 | 09.12.2021 |
SB2021120915 |
||
| #VU58796 - Incorrect Default Permissions CVE-2020-4976 |
CWE-276 | Low | 11.5.7.0 | 09.12.2021 |
SB2021120915 |
||
| #VU58795 - Improper Authorization CVE-2021-38931 |
CWE-285 | Low | 11.5.7.0 | 09.12.2021 |
SB2021120915 |
||
| #VU58794 - Permissions, Privileges, and Access Controls CVE-2021-38926 |
CWE-264 | Low | 11.5.7.0 | 09.12.2021 |
SB2021120915 |
Showing elements 21 - 40 out of 33