Known vulnerabilities in IBM Integration Bus - page 6

Software CPE: cpe:2.3:a:ibm_corporation:ibm_integration_bus:*:*:*:*:*:*:*:*
Total vulnerabilities: 140
Public exploits: 19
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Integration Bus IBM Integration Bus is affected by 140 known vulnerabilities: 1 critical, 17 high, 93 medium, 29 low Critical High Medium Low

Vulnerabilities (140)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72750 - Inefficient Algorithmic Complexity
CVE-2022-25881
CWE-407 Medium
No
No
- 03.03.2023 SB2023030326
SB2023030328
SB2023031112
and 61 more
#VU71999 - NULL Pointer Dereference
CVE-2023-0401
CWE-476 Medium
No
No
- 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 52 more
#VU71998 - NULL Pointer Dereference
CVE-2023-0217
CWE-476 Medium
No
No
- 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 49 more
#VU71997 - Release of invalid pointer or reference
CVE-2023-0216
CWE-763 Medium
No
No
- 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 50 more
#VU71995 - Use After Free
CVE-2023-0215
CWE-416 Medium
No
No
- 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 209 more
#VU71994 - Out-of-bounds read
CVE-2022-4203
CWE-125 Medium
No
No
- 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 47 more
#VU71993 - Information Exposure Through Timing Discrepancy
CVE-2022-4304
CWE-208 Medium
No
No
- 07.02.2023 SB2023020742
SB2023020748
SB2023020767
and 222 more
#VU71992 - Type confusion
CVE-2023-0286
CWE-843 High
No
No
- 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 223 more
#VU71185 - Improper input validation
CVE-2022-23529
CWE-20 High
Available
No
- 16.01.2023 SB2023011632
SB2023011633
SB2023020132
and 12 more
#VU71182 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-23540
CWE-327 High
Available
No
- 16.01.2023 SB2023011632
SB2023011633
SB2023020322
and 15 more
#VU71181 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-23541
CWE-327 High
No
No
- 16.01.2023 SB2023011632
SB2023011633
SB2023020322
and 16 more
#VU71180 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-23539
CWE-327 Medium
No
No
- 16.01.2023 SB2023011632
SB2023011633
SB2023020322
and 16 more
#VU68375 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-38712
CWE-451 Medium
No
No
- 18.10.2022 SB2022101803
SB2022111011
SB2022122019
and 6 more
#VU66698 - Exposure of sensitive information to an unauthorized actor
CVE-2022-29244
CWE-200 Medium
No
No
- 22.08.2022 SB2022082252
SB2022082253
SB2022091110
and 15 more
#VU66400 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2022-33987
CWE-601 Medium
No
No
- 11.08.2022 SB2022081124
SB2022081525
SB2022090835
and 22 more
#VU52448 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-2161
CWE-94 Medium
No
No
- 21.04.2021 SB2021042115
SB2021042116
SB2021042117
and 45 more
#VU5215 - Exposed Dangerous Method or Function
CVE-2014-3568
CWE-749 Low
No
No
9.0.0.4 20.01.2017 SB2014101601
SB2015092611
SB2014101501
and 17 more
#VU5214 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2014-3566
CWE-327 Medium
Available
No
9.0.0.4 20.01.2017 SB2014101601
SB2014102102
SB2016022401
and 78 more
#VU90 - Exposure of sensitive information to an unauthorized actor
CVE-2015-2808
CWE-200 Medium
No
No
- 05.07.2016 SB2015040102
SB2015040103
SB2023011274
and 27 more
#VU33689 - Improper input validation
CVE-2011-3389
CWE-20 Medium
No
No
- 06.09.2011 SB2022122814
SB2023011274
SB2023041256
and 3 more


Showing elements 101 - 120 out of 140