Known vulnerabilities in IBM Security Verify Governance - page 9

Software CPE: cpe:2.3:a:ibm_corporation:ibm_security_verify_governance:*:*:*:*:*:*:*:*
Total vulnerabilities: 633
Public exploits: 53
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.5

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Security Verify Governance IBM Security Verify Governance is affected by 633 known vulnerabilities: 2 critical, 117 high, 253 medium, 261 low Critical High Medium Low

Vulnerabilities (633)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU98437 - Cleartext Transmission of Sensitive Information
CVE-2023-35017
CWE-319 Medium
No
No
10.0.2.0.4 14.10.2024 SB2024101427
#VU98436 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2024-31882
CWE-74 Low
No
No
10.0.2.0.4 14.10.2024 SB2024101426
SB2024101427
SB2024102434
and 6 more
#VU98434 - Resource exhaustion
CVE-2024-35136
CWE-400 Low
No
No
10.0.2.0.4 14.10.2024 SB2024101421
SB2024101427
SB2024102434
and 7 more
#VU98433 - Uncontrolled Memory Allocation
CVE-2024-35152
CWE-789 Low
No
No
10.0.2.0.4 14.10.2024 SB2024101403
SB2024101427
SB2024102434
and 7 more
#VU98432 - Uncontrolled Memory Allocation
CVE-2024-37529
CWE-789 Low
No
No
10.0.2.0.4 14.10.2024 SB2024101402
SB2024101427
SB2024102434
and 7 more
#VU89220 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-30172
CWE-835 Medium
No
No
10.0.2.0.4 07.05.2024 SB2024050731
SB2024061019
SB20240611170
and 62 more
#VU89219 - Observable discrepancy
CVE-2024-30171
CWE-203 Medium
No
No
10.0.2.0.4 07.05.2024 SB2024050731
SB2024050734
SB2024061019
and 59 more
#VU89218 - Resource exhaustion
CVE-2024-29857
CWE-400 Medium
No
No
10.0.2.0.4 07.05.2024 SB2024050731
SB2024061019
SB20240611170
and 69 more
#VU86885 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-48624
CWE-78 Medium
No
No
10.0.2.0.4 28.02.2024 SB2024022820
SB2024022839
SB2024030503
and 60 more
#VU84985 - Out-of-bounds read
CVE-2023-7104
CWE-125 Medium
No
No
10.0.2.0.4 04.01.2024 SB2024010417
SB2024010420
SB2024010516
and 108 more
#VU84789 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-51385
CWE-78 Medium
Available
No
10.0.2.0.4 26.12.2023 SB2023121905
SB2023122710
SB2023122801
and 65 more
#VU84537 - Inadequate Encryption Strength
CVE-2023-48795
CWE-326 Low
Available
No
10.0.2.0.4 19.12.2023 SB2023121903
SB2023121905
SB2023121906
and 343 more
#VU79561 - Out-of-bounds write
CVE-2023-4016
CWE-787 High
No
No
10.0.2.0.4 15.08.2023 SB2023081548
SB20230821203
SB2023082925
and 49 more
#VU79523 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35939
CWE-59 Low
No
No
10.0.2.0.4 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU79521 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35938
CWE-59 Low
No
No
10.0.2.0.4 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU78454 - Untrusted Search Path
CVE-2023-38408
CWE-426 Medium
Available
No
10.0.2.0.4 20.07.2023 SB2023072068
SB2023072073
SB2023072074
and 73 more
#VU77208 - Improper Authentication
CVE-2023-20867
CWE-287 High
No
Exploited
10.0.2.0.4 13.06.2023 SB2023061339
SB2023061449
SB2023061649
and 34 more
#VU75389 - Resource exhaustion
CVE-2023-28450
CWE-400 Medium
No
No
10.0.2.0.4 20.04.2023 SB2023042040
SB2023042041
SB2023042042
and 30 more
#VU31245 - Improper Link Resolution Before File Access ('Link Following')
CVE-2017-7500
CWE-59 Low
No
No
10.0.2.0.4 13.08.2018 SB2018081318
SB2018102434
SB2018080623
and 14 more
#VU31396 - Improper Link Resolution Before File Access ('Link Following')
CVE-2017-7501
CWE-59 Low
No
No
10.0.2.0.4 22.11.2017 SB2017112213
SB2018102434
SB2022110933
and 13 more


Showing elements 161 - 180 out of 633