Known vulnerabilities in IBM Edge Application Manager - page 6

Software CPE: cpe:2.3:a:ibm_corporation:ibm_edge_application_manager:*:*:*:*:*:*:*:*
Total vulnerabilities: 203
Public exploits: 17
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Edge Application Manager IBM Edge Application Manager is affected by 203 known vulnerabilities: 1 critical, 35 high, 120 medium, 47 low Critical High Medium Low

Vulnerabilities (203)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU76188 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2022-21189
CWE-1321 Medium
No
No
- 16.05.2023 SB2023051656
SB2023051658
#VU76187 - Incorrect Regular Expression
CVE-2021-23346
CWE-185 Medium
No
No
- 16.05.2023 SB2023051647
SB2023051653
SB2023071921
and 1 more
#VU76186 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2022-0122
CWE-601 Low
No
No
- 16.05.2023 SB2023051646
SB2023051652
SB2022030935
and 1 more
#VU66758 - Improper Verification of Cryptographic Signature
CVE-2022-24772
CWE-347 Medium
No
No
- 25.08.2022 SB2022082510
SB2022082512
SB2022100554
and 8 more
#VU66447 - Overly Permissive Cross-domain Whitelist
CVE-2022-1996
CWE-942 Low
No
No
- 12.08.2022 SB2022081216
SB2022081228
SB2022081229
and 65 more
#VU65749 - Improper Verification of Cryptographic Signature
CVE-2022-24771
CWE-347 Medium
No
No
- 25.07.2022 SB2022072517
SB2022082512
SB2022100554
and 8 more
#VU64820 - Information Exposure Through Log Files
CVE-2020-8565
CWE-532 Low
No
No
- 30.06.2022 SB2023053114
SB2023103043
SB2024020523
and 10 more
#VU64699 - Incorrect Authorization
CVE-2022-24778
CWE-863 Medium
No
No
- 27.06.2022 SB2022062828
SB2022120642
SB2022121324
and 10 more
#VU64034 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3918
CWE-94 High
No
No
- 07.06.2022 SB2021111302
SB2022060836
SB2022071504
and 45 more
#VU64030 - Resource exhaustion
CVE-2021-44906
CWE-400 High
No
No
- 07.06.2022 SB2022060836
SB2022062103
SB2022062203
and 52 more
#VU63903 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2022-29078
CWE-74 High
Available
No
- 01.06.2022 SB2022060113
SB2022060136
SB2022062103
and 4 more
#VU61599 - Improper input validation
CVE-2022-21698
CWE-20 Medium
No
No
- 24.03.2022 SB2022021530
SB2022032413
SB2022040807
and 110 more
#VU57216 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-23436
CWE-94 Medium
No
No
- 11.10.2021 SB2021101114
SB2022100554
SB2022103128
and 1 more
#VU57215 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-28477
CWE-94 Medium
No
No
- 11.10.2021 SB2021011916
SB2022100554
SB2022103128
and 2 more
#VU55590 - Improper Protection of Alternate Path
CVE-2021-20206
CWE-424 Medium
No
No
- 05.08.2021 SB2021032636
SB2021080502
SB2022021637
and 19 more
#VU54999 - Permissions, Privileges, and Access Controls
CVE-2021-32760
CWE-264 Medium
No
No
- 20.07.2021 SB2021072005
SB2021072227
SB2021072708
and 17 more
#VU53399 - Security Features
CVE-2021-30465
CWE-254 Low
No
No
- 20.05.2021 SB2021052013
SB2021052014
SB2021052015
and 33 more
#VU52909 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-7774
CWE-94 Medium
No
No
- 06.05.2021 SB2020111735
SB2021050615
SB2021092814
and 24 more
#VU52902 - Improper Validation of Array Index
CVE-2021-3121
CWE-129 High
No
No
- 06.05.2021 SB2021011120
SB2021050602
SB2021050603
and 34 more
#VU51242 - Resource Management Errors
CVE-2021-21334
CWE-399 Medium
No
No
- 05.03.2021 SB2021030510
SB2021052627
SB2021092209
and 9 more


Showing elements 101 - 120 out of 203