Known vulnerabilities in IBM MQ - page 6

Software: IBM MQ
Software CPE: cpe:2.3:a:ibm_corporation:ibm_mq:*:*:*:*:*:*:*:*
Total vulnerabilities: 209
Public exploits: 6
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM MQ IBM MQ is affected by 209 known vulnerabilities: 13 high, 96 medium, 100 low Critical High Medium Low

Vulnerabilities (209)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU76487 - Inadequate Encryption Strength
CVE-2023-32342
CWE-326 Medium
No
No
9.0.0.18, 9.1.0.16, 9.2.0.15, 9.3.0.6, 9.3.3 24.05.2023 SB2023052446
SB2023060817
SB2023061605
and 25 more
#VU75608 - Information Exposure Through Log Files
CVE-2022-42436
CWE-532 Low
No
No
9.0.0.14, 9.1.0.13, 9.2.0.7, 9.3.0.2, 9.3.1.1 01.05.2023 SB2023050120
SB2023050121
SB2023050122
and 1 more
#VU75594 - Improper input validation
CVE-2023-22874
CWE-20 Low
No
No
9.3.0.5, 9.3.2.0 28.04.2023 SB2023042851
SB2023060212
SB2023090415
#VU75593 - Improper input validation
CVE-2023-26285
CWE-20 Medium
No
No
9.0.0.17, 9.2.0.11, 9.3.0.5, 9.3.2.1 28.04.2023 SB2023042850
SB2023042853
SB2023071403
and 2 more
#VU75592 - Information Exposure Through Log Files
CVE-2023-28950
CWE-532 Low
No
No
9.0.0.17, 9.2.0.11, 9.3.0.5, 9.3.2.1 28.04.2023 SB2023042849
SB2023060211
SB2023071403
and 1 more
#VU75591 - Information Exposure Through Log Files
CVE-2023-28514
CWE-532 Low
No
No
9.0.0.16, 9.1.4.0 28.04.2023 SB2023042848
SB2023090125
#VU75590 - Improper input validation
CVE-2022-43919
CWE-20 Medium
No
No
9.0.0.17, 9.2.0.10, 9.3.0.5, 9.3.2.0 28.04.2023 SB2023042847
SB2023042852
SB2023051921
and 2 more
#VU75508 - Exposure of sensitive information to an unauthorized actor
CVE-2023-30441
CWE-200 Medium
No
No
9.0.0.14, 9.0.0.17, 9.1.0.12, 9.2.0.7, 9.3.0.2, 9.3.1 26.04.2023 SB2023042618
SB2023042749
SB2023050107
and 41 more
#VU73828 - State Issues
CVE-2023-27535
CWE-371 Low
No
No
9.0.0.17, 9.2.0.11, 9.3.0.5, 9.3.2.1 20.03.2023 SB2023032027
SB2023032028
SB2023032044
and 84 more
#VU73189 - Improper input validation
CVE-2022-40237
CWE-20 Medium
No
No
9.0.0.16, 9.2.0.10, 9.3.0.4, 9.3.2.0 09.03.2023 SB2023030913
SB2023030919
#VU72427 - Allocation of Resources Without Limits or Throttling
CVE-2023-24998
CWE-770 Medium
Available
No
9.1.0.16, 9.2.0.15, 9.3.0.6, 9.3.3 20.02.2023 SB2023022046
SB2023022047
SB2023030917
and 202 more
#VU72337 - Allocation of Resources Without Limits or Throttling
CVE-2023-23916
CWE-770 Medium
No
No
9.0.0.17, 9.2.0.11, 9.3.0.5, 9.3.2.1 16.02.2023 SB2023021668
SB2023021670
SB2023021671
and 89 more
#VU71999 - NULL Pointer Dereference
CVE-2023-0401
CWE-476 Medium
No
No
9.0.0.17, 9.2.0.11, 9.3.0.5 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 52 more
#VU71998 - NULL Pointer Dereference
CVE-2023-0217
CWE-476 Medium
No
No
9.0.0.17, 9.2.0.11, 9.3.0.5 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 49 more
#VU71997 - Release of invalid pointer or reference
CVE-2023-0216
CWE-763 Medium
No
No
9.0.0.17, 9.2.0.11, 9.3.0.5 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 50 more
#VU71996 - Double Free
CVE-2022-4450
CWE-415 Medium
No
No
9.0.0.17, 9.2.0.11, 9.3.0.5 07.02.2023 SB2023020742
SB2023020748
SB2023020771
and 180 more
#VU71994 - Out-of-bounds read
CVE-2022-4203
CWE-125 Medium
No
No
9.0.0.17, 9.2.0.11, 9.3.0.5 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 47 more
#VU71993 - Information Exposure Through Timing Discrepancy
CVE-2022-4304
CWE-208 Medium
No
No
9.0.0.17, 9.2.0.11, 9.3.0.5 07.02.2023 SB2023020742
SB2023020748
SB2023020767
and 222 more
#VU70524 - Out-of-bounds write
CVE-2022-41854
CWE-787 Medium
No
No
9.2.0.7, 9.3.0.2, 9.3.2.0 28.12.2022 SB2022122813
SB2022122926
SB2023010417
and 52 more
#VU70441 - Insufficient Verification of Data Authenticity
CVE-2021-37533
CWE-345 Low
No
No
9.0.0.14, 9.1.0.13, 9.2.0.8, 9.3.0.3, 9.3.1.1 20.12.2022 SB2022122007
SB2022123001
SB2023011876
and 82 more


Showing elements 101 - 120 out of 209