Known vulnerabilities in IBM Integration Bus - page 7

Software CPE: cpe:2.3:a:ibm_corporation:ibm_integration_bus:*:*:*:*:*:*:*:*
Total vulnerabilities: 140
Public exploits: 19
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Integration Bus IBM Integration Bus is affected by 140 known vulnerabilities: 1 critical, 17 high, 93 medium, 29 low Critical High Medium Low

Vulnerabilities (140)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU65282 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-32215
CWE-444 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 54 more
#VU65278 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-32214
CWE-444 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 36 more
#VU65276 - Uncontrolled Search Path Element
CVE-2022-32223
CWE-427 Low
Available
No
- 13.07.2022 SB2022071338
SB2022080910
SB2022081105
and 9 more
#VU65275 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-32213
CWE-444 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 55 more
#VU65273 - Improper Check or Handling of Exceptional Conditions
CVE-2022-32212
CWE-703 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 48 more
#VU64922 - Missing Encryption of Sensitive Data
CVE-2022-2097
CWE-311 Low
No
No
- 05.07.2022 SB2022070509
SB2022070522
SB2022070531
and 112 more
#VU64915 - Resource exhaustion
CVE-2022-44906
CWE-400 Medium
No
No
- 05.07.2022 SB2022070501
#VU64696 - Improper input validation
CVE-2022-21803
CWE-20 Medium
No
No
- 27.06.2022 SB2022062917
SB2022062928
SB2022062931
and 5 more
#VU64030 - Resource exhaustion
CVE-2021-44906
CWE-400 High
No
No
- 07.06.2022 SB2022060836
SB2022062103
SB2022062203
and 52 more
#VU63903 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2022-29078
CWE-74 High
Available
No
- 01.06.2022 SB2022060113
SB2022060136
SB2022062103
and 4 more
#VU62768 - Uncontrolled Memory Allocation
CVE-2022-1473
CWE-789 Low
No
No
- 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 18 more
#VU62767 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2022-1434
CWE-300 Low
No
No
- 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 10 more
#VU62766 - Security Features
CVE-2022-1343
CWE-254 Medium
No
No
- 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 14 more
#VU62361 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-43138
CWE-94 Medium
No
No
- 15.04.2022 SB2022041532
SB2022041533
SB2022062103
and 33 more
#VU61799 - Out-of-bounds write
CVE-2020-36518
CWE-787 Medium
No
No
- 01.04.2022 SB2022040113
SB2022040114
SB2022040115
and 147 more
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Available
No
- 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more
#VU51733 - NULL Pointer Dereference
CVE-2021-3449
CWE-476 Medium
Available
No
- 25.03.2021 SB2021032518
SB2021032602
SB2021032617
and 56 more
#VU51732 - Security Features
CVE-2021-3450
CWE-254 Medium
No
No
- 25.03.2021 SB2021032518
SB2021032602
SB2021032617
and 50 more
#VU49916 - Stack-based buffer overflow
CVE-2020-27221
CWE-121 High
No
No
- 21.01.2021 SB2021012130
SB2021030504
SB2021030505
and 16 more
#VU27960 - Deserialization of Untrusted Data
CVE-2019-17571
CWE-502 High
No
No
- 18.05.2020 SB2019122027
SB2020051806
SB2020011497
and 28 more


Showing elements 121 - 140 out of 140