Known vulnerabilities in IBM Safer Payments - page 2
Vendor:
IBM Corporation
Software:
IBM Safer Payments
Software CPE:
cpe:2.3:a:ibm_corporation:ibm_safer_payments:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
39
Public exploits:
4
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
6.4.2.10
6.4.2.07
6.4.2.01
6.6.0.00
6.5.0.00
6.5.0.08
6.6.0.03
6.6.0.06
6.7.0.02
6.7.0.03
6.6.0.07
6.5.0.09
6.4.2.11
6.7.0.00
6.6.0.04
6.5.0.06
6.4.2.08
6.7.0.01
6.6.0.05
6.5.0.07
6.4.2.09
6.6.0.02
6.5.0.04
6.4.2.06
6.6.0.01
6.5.0.03
6.4.2.05
6.5.0.02
6.4.2.04
6.3.1.05
6.4.2.00
6.3.1.01
6.2.2.01
6.1.1.01
6.1.0.05
6.2.1.01
6.3.0.02
6.2.1.05
6.1.0.10
6.0.0.12
5.7.0.15
6.2.1.03
6.1.0.08
6.0.0.10
5.7.0.13
6.4.2.02
6.3.1.03
6.2.2.03
6.1.1.03
6.5.0.01
6.4.2.03
6.3.1.04
Vulnerabilities (39)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU75447 - Configuration CVE-2023-27557 |
CWE-16 | Low | 6.1.1.03, 6.2.2.03, 6.3.1.03, 6.4.2.02, 6.5.0.01 | 24.04.2023 |
SB2023042425 |
||
| #VU75446 - Resource exhaustion CVE-2023-27556 |
CWE-400 | Medium | 6.3.1.04, 6.4.2.03, 6.5.0.01 | 24.04.2023 |
SB2023042424 |
||
| #VU73970 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2022-48285 |
CWE-22 | Medium | 6.3.1.04, 6.4.2.03, 6.5.0.01 | 23.03.2023 |
SB2023032314 SB2023032315 SB2023042510 and 22 more |
||
| #VU72337 - Allocation of Resources Without Limits or Throttling CVE-2023-23916 |
CWE-770 | Medium | 6.4.2.03, 6.5.0.01 | 16.02.2023 |
SB2023021668 SB2023021670 SB2023021671 and 89 more |
||
| #VU72336 - Cleartext Transmission of Sensitive Information CVE-2023-23915 |
CWE-319 | Medium | 6.4.2.03, 6.5.0.01 | 16.02.2023 |
SB2023021668 SB2023021671 SB2023021672 and 26 more |
||
| #VU72335 - Cleartext Transmission of Sensitive Information CVE-2023-23914 |
CWE-319 | Medium | 6.4.2.03, 6.5.0.01 | 16.02.2023 |
SB2023021668 SB2023021671 SB2023021672 and 29 more |
||
| #VU71996 - Double Free CVE-2022-4450 |
CWE-415 | Medium | 6.3.1.04, 6.4.2.03, 6.5.0.01 | 07.02.2023 |
SB2023020742 SB2023020748 SB2023020771 and 180 more |
||
| #VU71995 - Use After Free CVE-2023-0215 |
CWE-416 | Medium | 6.3.1.04, 6.4.2.03, 6.5.0.01 | 07.02.2023 |
SB2023020742 SB2023020747 SB2023020748 and 209 more |
||
| #VU71993 - Information Exposure Through Timing Discrepancy CVE-2022-4304 |
CWE-208 | Medium | 6.3.1.04, 6.4.2.03, 6.5.0.01 | 07.02.2023 |
SB2023020742 SB2023020748 SB2023020767 and 222 more |
||
| #VU71992 - Type confusion CVE-2023-0286 |
CWE-843 | High | 6.3.1.04, 6.4.2.03, 6.5.0.01 | 07.02.2023 |
SB2023020742 SB2023020747 SB2023020748 and 223 more |
||
| #VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2022-0778 |
CWE-835 | Medium | 6.1.1.01, 6.2.2.01, 6.3.1.01, 6.4.2.00 | 15.03.2022 |
SB2022031520 SB2022031522 SB2022031611 and 238 more |
||
| #VU56064 - Out-of-bounds read CVE-2021-3712 |
CWE-125 | Medium | 5.7.0.15, 6.0.0.12, 6.1.0.10, 6.2.1.05, 6.3.0.02 | 24.08.2021 |
SB2021082414 SB2021082508 SB2021082510 and 142 more |
||
| #VU51733 - NULL Pointer Dereference CVE-2021-3449 |
CWE-476 | Medium | 6.1.0.08, 6.2.1.03 | 25.03.2021 |
SB2021032518 SB2021032602 SB2021032617 and 56 more |
||
| #VU51732 - Security Features CVE-2021-3450 |
CWE-254 | Medium | 6.1.0.08, 6.2.1.03 | 25.03.2021 |
SB2021032518 SB2021032602 SB2021032617 and 50 more |
||
| #VU50745 - Improper input validation CVE-2021-23840 |
CWE-20 | Medium | 5.7.0.13, 6.0.0.10, 6.1.0.08, 6.2.1.03 | 17.02.2021 |
SB2021021702 SB2021021817 SB2021022420 and 83 more |
||
| #VU50744 - Cryptographic Issues CVE-2021-23839 |
CWE-310 | Low | 5.7.0.13, 6.0.0.10, 6.1.0.08, 6.2.1.03 | 17.02.2021 |
SB2021021702 SB2021041501 SB2021041502 and 15 more |
||
| #VU50740 - NULL Pointer Dereference CVE-2021-23841 |
CWE-476 | Medium | 5.7.0.13, 6.0.0.10, 6.1.0.08, 6.2.1.03 | 17.02.2021 |
SB2021021702 SB2021021817 SB2021022420 and 66 more |
||
| #VU46573 - Exposure of sensitive information to an unauthorized actor CVE-2020-1968 |
CWE-200 | Medium | 5.7.0.13, 6.0.0.10 | 10.09.2020 |
SB2020091011 SB2020121720 SB2021012078 and 22 more |
||
| #VU27061 - NULL Pointer Dereference CVE-2020-1967 |
CWE-476 | Medium | 6.1.0.05, 6.2.1.01 | 21.04.2020 |
SB2020042130 SB2020042131 SB2020042326 and 19 more |
Showing elements 21 - 40 out of 39