Known vulnerabilities in IBM Safer Payments
Vendor:
IBM Corporation
Software:
IBM Safer Payments
Software CPE:
cpe:2.3:a:ibm_corporation:ibm_safer_payments:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
39
Public exploits:
4
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
6.4.2.10
6.4.2.07
6.4.2.01
6.6.0.00
6.5.0.00
6.5.0.08
6.6.0.03
6.6.0.06
6.7.0.02
6.7.0.03
6.6.0.07
6.5.0.09
6.4.2.11
6.7.0.00
6.6.0.04
6.5.0.06
6.4.2.08
6.7.0.01
6.6.0.05
6.5.0.07
6.4.2.09
6.6.0.02
6.5.0.04
6.4.2.06
6.6.0.01
6.5.0.03
6.4.2.05
6.5.0.02
6.4.2.04
6.3.1.05
6.4.2.00
6.3.1.01
6.2.2.01
6.1.1.01
6.1.0.05
6.2.1.01
6.3.0.02
6.2.1.05
6.1.0.10
6.0.0.12
5.7.0.15
6.2.1.03
6.1.0.08
6.0.0.10
5.7.0.13
6.4.2.02
6.3.1.03
6.2.2.03
6.1.1.03
6.5.0.01
6.4.2.03
6.3.1.04
Vulnerabilities (39)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU99865 - Comparison using wrong factors CVE-2024-9681 |
CWE-1025 | Low | 6.4.2.11, 6.5.0.09, 6.6.0.07, 6.7.0.03 | 06.11.2024 |
SB2024110621 SB2024110655 SB2024110656 and 30 more |
||
| #VU99578 - Allocation of Resources Without Limits or Throttling CVE-2024-45662 |
CWE-770 | Medium | 6.4.2.08, 6.5.0.06, 6.6.0.04, 6.7.0.00 | 01.11.2024 |
SB2024110120 |
||
| #VU98132 - Inefficient Regular Expression Complexity CVE-2024-45296 |
CWE-1333 | Low | 6.4.2.09, 6.5.0.07, 6.6.0.05, 6.7.0.01 | 08.10.2024 |
SB2024100822 SB2024100823 SB2024100826 and 87 more |
||
| #VU81865 - Heap-based Buffer Overflow CVE-2023-38545 |
CWE-122 | High | 6.4.2.06, 6.5.0.04, 6.6.0.02 | 11.10.2023 |
SB2023101129 SB2023101135 SB2023101149 and 99 more |
||
| #VU81863 - External Control of File Name or Path CVE-2023-38546 |
CWE-73 | Low | 6.4.2.06, 6.5.0.04, 6.6.0.02 | 11.10.2023 |
SB2023101129 SB2023101135 SB2023101149 and 125 more |
||
| #VU80732 - Resource exhaustion CVE-2023-38039 |
CWE-400 | Medium | 6.4.2.06, 6.5.0.04, 6.6.0.02 | 13.09.2023 |
SB2023091327 SB2023091363 SB2023091402 and 33 more |
||
| #VU78540 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2023-32001 |
CWE-367 | Low | 6.4.2.05, 6.5.0.03, 6.6.0.01 | 21.07.2023 |
SB2023072135 SB2023072137 SB2023072138 and 17 more |
||
| #VU76651 - Resource Management Errors CVE-2023-2650 |
CWE-399 | Medium | 6.3.1.05, 6.4.2.04, 6.5.0.02 | 30.05.2023 |
SB2023053040 SB2023053044 SB2023053045 and 131 more |
||
| #VU76238 - Expected Behavior Violation CVE-2023-28322 |
CWE-440 | Medium | 6.4.2.05, 6.5.0.03, 6.6.0.01 | 17.05.2023 |
SB2023051752 SB2023051760 SB2023051761 and 88 more |
||
| #VU76237 - Improper Certificate Validation CVE-2023-28321 |
CWE-295 | Medium | 6.4.2.05, 6.5.0.03, 6.6.0.01 | 17.05.2023 |
SB2023051752 SB2023051760 SB2023051761 and 99 more |
||
| #VU74862 - Resource Management Errors CVE-2023-29469 |
CWE-399 | Medium | 6.3.1.05, 6.4.2.04, 6.5.0.02 | 11.04.2023 |
SB2023041144 SB2023041145 SB2023041939 and 84 more |
||
| #VU74149 - Security Features CVE-2023-0466 |
CWE-254 | Low | 6.3.1.05, 6.4.2.04, 6.5.0.02 | 28.03.2023 |
SB2023032241 SB2023040666 SB2023040730 and 86 more |
||
| #VU74148 - Improper Verification of Cryptographic Signature CVE-2023-0465 |
CWE-347 | Low | 6.3.1.05, 6.4.2.04, 6.5.0.02 | 28.03.2023 |
SB2023032241 SB2023040666 SB2023040730 and 100 more |
||
| #VU73960 - Resource exhaustion CVE-2023-0464 |
CWE-400 | Medium | 6.3.1.05, 6.4.2.04, 6.5.0.02 | 22.03.2023 |
SB2023032241 SB2023033057 SB2023033058 and 100 more |
||
| #VU73831 - Exposure of sensitive information to an unauthorized actor CVE-2023-27538 |
CWE-200 | Medium | 6.4.2.03, 6.5.0.01 | 20.03.2023 |
SB2023032027 SB2023032028 SB2023032044 and 40 more |
||
| #VU73829 - State Issues CVE-2023-27536 |
CWE-371 | Medium | 6.4.2.03, 6.5.0.01 | 20.03.2023 |
SB2023032027 SB2023032028 SB2023032044 and 80 more |
||
| #VU73828 - State Issues CVE-2023-27535 |
CWE-371 | Low | 6.4.2.03, 6.5.0.01 | 20.03.2023 |
SB2023032027 SB2023032028 SB2023032044 and 84 more |
||
| #VU73826 - Improper input validation CVE-2023-27533 |
CWE-20 | Low | 6.4.2.03, 6.5.0.01 | 20.03.2023 |
SB2023032027 SB2023032028 SB2023032044 and 42 more |
||
| #VU70457 - Security Features CVE-2022-43551 |
CWE-254 | Medium | 6.4.2.03, 6.5.0.01 | 21.12.2022 |
SB2022122102 SB2022122620 SB2023010612 and 32 more |
||
| #VU70456 - Use After Free CVE-2022-43552 |
CWE-416 | Low | 6.4.2.03, 6.5.0.01 | 21.12.2022 |
SB2022122102 SB2022122620 SB2022122621 and 66 more |
Showing elements 1 - 20 out of 39