Known vulnerabilities in IBM Security Verify Governance - page 6

Software CPE: cpe:2.3:a:ibm_corporation:ibm_security_verify_governance:*:*:*:*:*:*:*:*
Total vulnerabilities: 633
Public exploits: 53
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.5

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Security Verify Governance IBM Security Verify Governance is affected by 633 known vulnerabilities: 2 critical, 117 high, 253 medium, 261 low Critical High Medium Low

Vulnerabilities (633)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU104172 - Uncontrolled Memory Allocation
CVE-2024-45663
CWE-789 Medium
No
No
- 25.02.2025 SB2025022520
SB2025022521
SB2025031921
and 6 more
#VU104124 - Allocation of Resources Without Limits or Throttling
CVE-2024-41762
CWE-770 Medium
No
No
- 21.02.2025 SB2025022118
SB2025022521
SB2025031921
and 6 more
#VU104123 - Allocation of Resources Without Limits or Throttling
CVE-2024-41761
CWE-770 Low
No
No
- 21.02.2025 SB2025022117
SB2025022521
SB2025031921
and 6 more
#VU104121 - Information Exposure Through Log Files
CVE-2024-40679
CWE-532 Low
No
No
- 21.02.2025 SB2025022116
SB2025022521
SB2025031921
and 7 more
#VU104120 - Uncontrolled Memory Allocation
CVE-2024-37071
CWE-789 Low
No
No
- 21.02.2025 SB2025022115
SB2025022521
SB2025031921
and 6 more
#VU100521 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-45087
CWE-79 Medium
No
No
- 15.11.2024 SB2024111525
SB2024112217
SB2024112515
and 6 more
#VU99760 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2024-45086
CWE-611 Medium
No
No
- 05.11.2024 SB2024110544
SB2024110623
SB2024110629
and 8 more
#VU99280 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-45071
CWE-79 Low
No
No
- 23.10.2024 SB2024102327
SB2024102343
SB2024102353
and 11 more
#VU98810 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2024-45072
CWE-611 Medium
No
No
- 18.10.2024 SB2024101807
SB2024101813
SB20241022399
and 11 more
#VU98136 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-45073
CWE-79 Low
No
No
- 08.10.2024 SB2024100833
SB2024100834
SB2024100942
and 12 more
#VU96059 - Exposure of sensitive information to an unauthorized actor
CVE-2023-50315
CWE-200 Low
No
No
10.0.2.0.4 15.08.2024 SB2024081567
SB2024082831
SB2024082846
and 9 more
#VU86208 - Use After Free
CVE-2021-41043
CWE-416 Medium
No
No
10.0.2.0.4 07.02.2024 SB2022011246
SB2024020724
SB2024021202
and 9 more
#VU83316 - Information Exposure Through Timing Discrepancy
CVE-2023-5981
CWE-208 Medium
No
No
10.0.2.0.4 20.11.2023 SB2023112075
SB2023112145
SB2023120164
and 79 more
#VU77249 - Out-of-bounds write
CVE-2023-2194
CWE-787 Low
No
No
10.0.2.0.4 13.06.2023 SB2023061363
SB2023061420
SB2023061421
and 52 more
#VU75997 - Use After Free
CVE-2023-2235
CWE-416 Low
No
No
10.0.2.0.4 10.05.2023 SB2023051051
SB2023051054
SB2023051057
and 37 more
#VU75568 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2019-14900
CWE-89 Medium
No
No
10.0.1.0.2 28.04.2023 SB2020070614
SB2023042803
SB2021040765
and 3 more
#VU75333 - Use After Free
CVE-2022-45884
CWE-416 Low
No
No
10.0.2.0.4 19.04.2023 SB2023041921
SB2023042426
SB2023061420
and 35 more
#VU75323 - Out-of-bounds read
CVE-2023-2124
CWE-125 Low
No
No
10.0.2.0.4 19.04.2023 SB2023041913
SB2023050422
SB2023051052
and 80 more
#VU69176 - Out-of-bounds write
CVE-2022-44638
CWE-787 High
No
No
10.0.2.0.4 09.11.2022 SB2022110943
SB2022110944
SB2022111201
and 37 more
#VU48543 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-25638
CWE-89 High
No
No
10.0.1.0.2 19.11.2020 SB2020111901
SB2021050201
SB2021063003
and 8 more


Showing elements 101 - 120 out of 633