Known vulnerabilities in IBM DB2 - page 8
Vendor:
IBM Corporation
Software:
IBM DB2
Software CPE:
cpe:2.3:a:ibm_corporation:ibm_db2:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
239
Public exploits:
10
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
12.1.4
11.5.6
11.5.5
12.1.3
12.1.2
12.1.0
5.2.0
5.1
4.7
4.5
4.0
3.5
11.1.4 FP7
12.1.1
5.0.3
5.0
11.1
4.8
11.5.9
4.6
11.5.7000.1973
11.5.8
10.5 FP11
9.7 FP11
1
11.1.4.3
11.1.4.2
11.1.4.1
11.5.7
11.1.4.7
8.0.7.5
7.0.11.0
11.5.7.0
11.5.6.0
11.5.5.1
11.5.5.0
11.5.4.0
11.5.0.0
11.1.4.6
11.1.4.5
11.1.4.4 iFix001
11.1.3.3
11.1.2.2 iFix002
11.1.2.2 iFix001
11.1.2.2
11.1.1.1 iFix001
11.1.1.1
10.5.0.11
10.1.0.3a
9.7.0.3a
9.5.0.6a
9.5.0.4a
9.5.0.3b
9.5.0.3a
9.5.0.2a
9.0.1.7a
9.0.1.6a
9.0.1.4a
9.0.1.3a
9.0.1.2a
9.7.0.9a
9.1.0.12
11.1 FP5
11.5
11.1.4.4
11.1.3.3 iFix002
10.5.0.10
11.1.3.3 iFix001
10.1.0.6
11.1 FP3
10.5.0.9
11.1 FP2
11.1 FP1
10.5.0.8
11.1.0.0
9.7.0.10
10.1.0.5
9.7.0.11
9.8.0.2
9.8.0.1
10.5.0.7
10.5.0.6
10.5.0.5
10.5.0.4
9.5.0.10
10.5.0.3
10.1.0.4
9.7.0.7
9.7.0.8
9.7.0.9
10.5.0.2
10.5.0.1
10.1.0.3
10.1.0.2
10.1.0.1
10.5
10.1
9.8.0.5
9.5.0.6
9.7.0.6
9.5.0.5
9.1.0.1
9.1.0.8
9.1.0.11
9.1.0.6
9.1.0.7
9.1.0.4
9.1.0.5
9.1.0.2
9.1.0.3
9.5.0.2
9.5.0.3
9.5.0.1
9.1.0.10
9.1.0.9
9.5.0.8
9.5.0.9
9.5.0.7
9.5.0.4
9.8.0.4
9.8.0.3
9.7.0.5
9.8
9.7.0.3
9.7.0.4
9.7.0.2
9.7.0.1
9.7
9.5.0.0
8.2 fixpack15
9.1.0.0
8.2
8.1.7b
8.1.8
8.1.9a
8.10
8.12
8.1.6c
8.0
8.1
8.1.4
8.2.0
8.2.1
8.1.8a
8.1.9
8.1.7
8.1.5
8.1.6
8.2.2
9.0
10.5.0.0
10.1.0.0
9.8.0.0
9.7.0.0
Vulnerabilities (239)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU82580 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2023-40372 |
CWE-89 | Medium | 11.5.0.0, 11.5.7, 11.5.8 | 31.10.2023 |
SB2023103131 SB2023110304 SB2023111305 and 10 more |
||
| #VU82578 - Resource exhaustion CVE-2023-30987 |
CWE-400 | Medium | 10.5 FP11, 11.1.4.7, 11.5.0.0, 11.5.7, 11.5.8 | 31.10.2023 |
SB2023103131 SB2023110304 SB2023111305 and 9 more |
||
| #VU81946 - Insufficient Logging CVE-2023-23487 |
CWE-778 | Low | 10.5 FP11, 11.1.4.7, 11.5.7, 11.5.8 | 12.10.2023 |
SB2023101241 SB2024021220 SB2024021317 and 11 more |
||
| #VU81945 - Permissions, Privileges, and Access Controls CVE-2023-27558 |
CWE-264 | High | 10.5 FP11, 11.1.4.7, 11.5.7, 11.5.8 | 12.10.2023 |
SB2023101240 SB2024021220 SB2024021317 and 9 more |
||
| #VU81944 - Exposure of sensitive information to an unauthorized actor CVE-2023-29256 |
CWE-200 | Low | 10.5 FP11, 11.1.4.7, 11.5.7, 11.5.8 | 12.10.2023 |
SB2023101239 SB2024021220 SB2024021317 and 10 more |
||
| #VU81935 - Resource exhaustion CVE-2023-30442 |
CWE-400 | Medium | 11.1.4.7, 11.5.7, 11.5.8 | 12.10.2023 |
SB2023101203 SB2024021220 SB2024021317 and 8 more |
||
| #VU81916 - Memory corruption CVE-2023-30431 |
CWE-119 | High | 10.5 FP11, 11.1.4.7, 11.5.7, 11.5.8 | 11.10.2023 |
SB2023101169 SB2024021220 SB2024021317 and 12 more |
||
| #VU81725 - Resource exhaustion CVE-2023-40374 |
CWE-400 | Low | 11.5.0.0, 11.5.7, 11.5.8 | 10.10.2023 |
SB2023101017 SB2023103131 SB2023110304 and 10 more |
||
| #VU81724 - Resource exhaustion CVE-2023-38728 |
CWE-400 | Low | 10.5 FP11, 11.1.4.7, 11.5.0.0, 11.5.7, 11.5.8 | 10.10.2023 |
SB2023101016 SB2023103131 SB2023110304 and 9 more |
||
| #VU81723 - Resource exhaustion CVE-2023-38720 |
CWE-400 | Low | 11.1.4.7, 11.5.0.0, 11.5.7, 11.5.8 | 10.10.2023 |
SB2023101015 SB2023103131 SB2023110304 and 9 more |
||
| #VU81722 - Resource exhaustion CVE-2023-30991 |
CWE-400 | Medium | 11.1.4.7, 11.5.0.0, 11.5.7, 11.5.8 | 10.10.2023 |
SB2023101014 SB2023103131 SB2023110304 and 9 more |
||
| #VU81713 - Resource exhaustion CVE-2023-40373 |
CWE-400 | Low | 10.5 FP11, 11.1.4.7, 11.5.7, 11.5.8 | 09.10.2023 |
SB2023100932 SB2023103131 SB2023110304 and 9 more |
||
| #VU81712 - Resource exhaustion CVE-2023-38719 |
CWE-400 | Medium | 11.5.8 | 09.10.2023 |
SB2023100931 SB2023103131 SB2023110304 and 10 more |
||
| #VU76487 - Inadequate Encryption Strength CVE-2023-32342 |
CWE-326 | Medium | 10.5 FP11, 11.1.4.7, 11.5.7, 11.5.8 | 24.05.2023 |
SB2023052446 SB2023060817 SB2023061605 and 25 more |
||
| #VU75508 - Exposure of sensitive information to an unauthorized actor CVE-2023-30441 |
CWE-200 | Medium | 11.1.4.7, 11.5.7, 11.5.8 | 26.04.2023 |
SB2023042618 SB2023042749 SB2023050107 and 41 more |
||
| #VU75264 - Improper input validation CVE-2023-21939 |
CWE-20 | Medium | 11.1.4.7, 11.5.7, 11.5.8 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 179 more |
||
| #VU75266 - Improper input validation CVE-2023-21968 |
CWE-20 | Low | 11.1.4.7, 11.5.7, 11.5.8 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 179 more |
||
| #VU75260 - Improper input validation CVE-2023-21930 |
CWE-20 | Medium | 11.1.4.7, 11.5.7, 11.5.8 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 191 more |
||
| #VU75261 - Improper input validation CVE-2023-21967 |
CWE-20 | Medium | 11.1.4.7, 11.5.7, 11.5.8 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 189 more |
||
| #VU75262 - Improper input validation CVE-2023-21954 |
CWE-20 | Medium | 11.1.4.7, 11.5.7, 11.5.8 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 166 more |
Showing elements 141 - 160 out of 239