Known vulnerabilities in IBM Spectrum Protect Plus - page 11

Software CPE: cpe:2.3:a:ibm_corporation:ibm_spectrum_protect_plus:*:*:*:*:*:*:*:*
Total vulnerabilities: 397
Public exploits: 33
Known exploited (KEV): 10
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Spectrum Protect Plus IBM Spectrum Protect Plus is affected by 397 known vulnerabilities: 1 critical, 31 high, 168 medium, 197 low Critical High Medium Low

Vulnerabilities (397)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU78253 - Origin Validation Error
CVE-2019-11777
CWE-346 Medium
No
No
10.1.13 14.07.2023 SB2023071415
SB2023092720
SB2023092722
and 4 more
#VU78010 - Out-of-bounds write
CVE-2023-3090
CWE-787 Low
No
No
10.1.15.2 06.07.2023 SB2023070628
SB2023070629
SB2023071151
and 114 more
#VU75448 - Use After Free
CVE-2023-1829
CWE-416 Low
Available
No
10.1.15.2 24.04.2023 SB2023042427
SB2023042440
SB2023042639
and 187 more
#VU75323 - Out-of-bounds read
CVE-2023-2124
CWE-125 Low
No
No
10.1.15.2 19.04.2023 SB2023041913
SB2023050422
SB2023051052
and 80 more
#VU75163 - Permissions, Privileges, and Access Controls
CVE-2023-2002
CWE-264 Low
Available
No
10.1.15.2 17.04.2023 SB2023041712
SB2023061422
SB2023061902
and 88 more
#VU74771 - Information Exposure through Microarchitectural State after Transient Execution
CVE-2023-1637
CWE-1342 Low
No
No
10.1.15.2 10.04.2023 SB2023041037
SB2023041041
SB2023041830
and 30 more
#VU71999 - NULL Pointer Dereference
CVE-2023-0401
CWE-476 Medium
No
No
10.1.14 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 52 more
#VU71998 - NULL Pointer Dereference
CVE-2023-0217
CWE-476 Medium
No
No
10.1.14 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 49 more
#VU71997 - Release of invalid pointer or reference
CVE-2023-0216
CWE-763 Medium
No
No
10.1.14 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 50 more
#VU71994 - Out-of-bounds read
CVE-2022-4203
CWE-125 Medium
No
No
10.1.14 07.02.2023 SB2023020742
SB2023020748
SB2023020774
and 47 more
#VU71541 - Improper Access Control
CVE-2022-4662
CWE-284 Low
No
No
10.1.15.2 25.01.2023 SB2023012561
SB2023012565
SB2023012626
and 38 more
#VU70460 - Memory corruption
CVE-2022-4139
CWE-119 Low
No
No
10.1.14 21.12.2022 SB2022122134
SB2022122135
SB2022122136
and 71 more
#VU69394 - Out-of-bounds write
CVE-2022-2601
CWE-787 Low
No
No
10.1.14 16.11.2022 SB2022111652
SB2022111654
SB2022111661
and 44 more
#VU69354 - Reliance on Reverse DNS Resolution for a Security-Critical Action
CVE-2022-43548
CWE-350 Medium
No
No
10.1.14 15.11.2022 SB2022111599
SB20221115101
SB20221115102
and 47 more
#VU66397 - Double Free
CVE-2022-2588
CWE-415 Low
Available
Exploited
10.1.14 11.08.2022 SB2022081109
SB2022081110
SB2022081111
and 99 more
#VU65831 - Improper input validation
CVE-2022-2047
CWE-20 Low
No
No
10.1.14 27.07.2022 SB2022072723
SB2022080103
SB2022080260
and 41 more
#VU63427 - Missing release of memory after effective lifetime
CVE-2022-0854
CWE-401 Low
No
No
10.1.14 19.05.2022 SB2022061213
SB2022061417
SB2022042152
and 33 more
#VU62074 - Use After Free
CVE-2022-28893
CWE-416 Low
No
No
10.1.14 11.04.2022 SB2022041133
SB2022061417
SB2022061726
and 24 more
#VU25355 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2019-20444
CWE-444 Medium
No
No
10.1.14 14.02.2020 SB2020012928
SB2020022601
SB2020031305
and 36 more
#VU12886 - Uncontrolled Memory Allocation
CVE-2018-10237
CWE-789 Low
No
No
10.1.14 21.05.2018 SB2018052310
SB2018083005
SB2018092411
and 43 more


Showing elements 201 - 220 out of 397