Known vulnerabilities in IBM QRadar Network Packet Capture
Vendor:
IBM Corporation
Software:
IBM QRadar Network Packet Capture
Software CPE:
cpe:2.3:a:ibm_corporation:ibm_qradar_network_packet_capture:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
120
Public exploits:
9
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (120)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU101024 - Improper Output Neutralization for Logs CVE-2024-52337 |
CWE-117 | Low | 7.5.0 Update Package 12 | 28.11.2024 |
SB2024112824 SB2024112827 SB2024112828 and 20 more |
||
| #VU100566 - Off-by-one Error CVE-2024-52533 |
CWE-193 | High | 7.5.0 Update Package 14 | 15.11.2024 |
SB20241115147 SB20241115148 SB20241115149 and 71 more |
||
| #VU97951 - Incomplete cleanup CVE-2023-31356 |
CWE-459 | Low | 7.5.0 Update Package 11 | 02.10.2024 |
SB2024100225 SB2024100226 SB2024100227 and 19 more |
||
| #VU97948 - Improper input validation CVE-2023-20584 |
CWE-20 | Low | 7.5.0 Update Package 11 | 02.10.2024 |
SB2024100225 SB2024100226 SB2024100227 and 18 more |
||
| #VU96899 - Integer overflow CVE-2024-45492 |
CWE-190 | High | 7.5.0 Update Package 11 | 05.09.2024 |
SB20240905100 SB20240905101 SB20240905102 and 108 more |
||
| #VU96898 - Integer overflow CVE-2024-45491 |
CWE-190 | High | 7.5.0 Update Package 11 | 05.09.2024 |
SB20240905100 SB20240905101 SB20240905102 and 106 more |
||
| #VU96897 - Buffer Underwrite ('Buffer Underflow') CVE-2024-45490 |
CWE-124 | High | 7.5.0 Update Package 11 | 05.09.2024 |
SB20240905100 SB20240905101 SB20240905102 and 113 more |
||
| #VU96745 - Incorrect Regular Expression CVE-2024-6232 |
CWE-185 | Medium | 7.5.0 Update Package 11 | 03.09.2024 |
SB2024090377 SB2024090927 SB2024091048 and 145 more |
||
| #VU96619 - Permissions, Privileges, and Access Controls CVE-2023-31315 |
CWE-264 | Low | 7.5.0 Update Package 11 | 29.08.2024 |
SB2024082927 SB2024082928 SB2024082929 and 23 more |
||
| #VU95571 - Command injection CVE-2024-6923 |
CWE-77 | Medium | 7.5.0 Update Package 11 | 08.08.2024 |
SB2024080861 SB2024080862 SB2024080863 and 144 more |
||
| #VU95157 - Incorrect Provision of Specified Functionality CVE-2024-4032 |
CWE-684 | Medium | 7.5.0 Update Package 11 | 02.08.2024 |
SB2024080203 SB2024080207 SB2024080209 and 101 more |
||
| #VU93870 - Resource Management Errors CVE-2024-27410 |
CWE-399 | Low | 7.5.0 Update Package 10 | 08.07.2024 |
SB2024070888 SB2024070893 SB2024070894 and 32 more |
||
| #VU93424 - Out-of-bounds read CVE-2024-5535 |
CWE-125 | Low | 7.5.0 Update Package 11 | 27.06.2024 |
SB2024062720 SB20240717135 SB2024072154 and 157 more |
||
| #VU93285 - UNIX Symbolic Link (Symlink) Following CVE-2024-5742 |
CWE-61 | Low | 7.5.0 Update Package 11 | 25.06.2024 |
SB2024062564 SB2024062569 SB2024092408 and 11 more |
||
| #VU93118 - Use of Potentially Dangerous Function CVE-2024-39331 |
CWE-676 | High | 7.5.0 Update Package 11 | 24.06.2024 |
SB2024062429 SB2024062430 SB2024062431 and 46 more |
||
| #VU92944 - Error Handling CVE-2024-26906 |
CWE-388 | Low | 7.5.0 Update Package 10 | 20.06.2024 |
SB20240620224 SB2024062493 SB20240702138 and 41 more |
||
| #VU90167 - Use After Free CVE-2024-35789 |
CWE-416 | Low | 7.5.0 Update Package 10 | 31.05.2024 |
SB2024053184 SB2024062808 SB20240702143 and 70 more |
||
| #VU87808 - Insufficient Verification of Data Authenticity CVE-2024-30203 |
CWE-345 | High | 7.5.0 Update Package 11 | 26.03.2024 |
SB2024032628 SB2024032629 SB2024032630 and 30 more |
||
| #VU87804 - Insufficient Verification of Data Authenticity CVE-2024-30205 |
CWE-345 | High | 7.5.0 Update Package 11 | 26.03.2024 |
SB2024032628 SB2024032629 SB2024032630 and 32 more |
||
| #VU86052 - Use After Free CVE-2024-25062 |
CWE-416 | High | 7.5.0 Update Package 11 | 05.02.2024 |
SB2024020507 SB2024020508 SB2024020742 and 115 more |
Showing elements 1 - 20 out of 120