Known vulnerabilities in IBM Spectrum Protect Plus - page 2

Software CPE: cpe:2.3:a:ibm_corporation:ibm_spectrum_protect_plus:*:*:*:*:*:*:*:*
Total vulnerabilities: 397
Public exploits: 33
Known exploited (KEV): 10
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Spectrum Protect Plus IBM Spectrum Protect Plus is affected by 397 known vulnerabilities: 1 critical, 31 high, 168 medium, 197 low Critical High Medium Low

Vulnerabilities (397)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU99567 - Resource exhaustion
CVE-2024-49767
CWE-400 Medium
No
No
10.1.17.1 31.10.2024 SB2024103173
SB2024103176
SB2024110601
and 30 more
#VU99566 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-49766
CWE-22 Medium
No
No
10.1.17.1 31.10.2024 SB2024103173
SB2024121313
SB2024121851
and 16 more
#VU97208 - Asymmetric Resource Consumption (Amplification)
CVE-2024-45590
CWE-405 Medium
Available
No
10.1.17.1 12.09.2024 SB2024091249
SB2024091251
SB2024091252
and 59 more
#VU95339 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-6345
CWE-94 High
No
No
10.1.17.1 05.08.2024 SB2024080590
SB2024080593
SB2024080594
and 160 more
#VU77475 - Incorrect Default Permissions
CVE-2021-20269
CWE-276 Low
No
No
10.1.11 16.06.2023 SB2022031041
SB2023061617
SB2022081308
and 2 more
#VU71642 - Incorrect Regular Expression
CVE-2022-42969
CWE-185 Medium
No
No
10.1.17.1 30.01.2023 SB2023013033
SB2023013037
SB2023021338
and 11 more
#VU65859 - Resource exhaustion
CVE-2020-29651
CWE-400 Medium
No
No
10.1.17.1 28.07.2022 SB2022072916
SB2022081723
SB2022093029
and 8 more
#VU64830 - Resource exhaustion
CVE-2021-28971
CWE-400 Low
No
No
10.1.11 30.06.2022 SB2022070610
SB2022091213
SB2021060427
and 25 more
#VU63925 - NULL Pointer Dereference
CVE-2022-0286
CWE-476 Low
No
No
10.1.11 02.06.2022 SB2022062928
SB2022062931
SB2022070643
and 6 more
#VU63668 - Exposure of sensitive information to an unauthorized actor
CVE-2021-45485
CWE-200 Medium
No
No
10.1.11 25.05.2022 SB2022022237
SB2022062928
SB2022062931
and 26 more
#VU63323 - Memory corruption
CVE-2021-4157
CWE-119 High
No
No
10.1.11 17.05.2022 SB2022051833
SB2022062928
SB2022062931
and 27 more
#VU61246 - Use After Free
CVE-2021-4083
CWE-416 Low
No
No
10.1.11 10.03.2022 SB2022031029
SB2022031033
SB2022031034
and 55 more
#VU61217 - Permissions, Privileges, and Access Controls
CVE-2022-22942
CWE-264 Low
Available
Exploited
10.1.11 09.03.2022 SB2022030916
SB2022030925
SB2022030926
and 58 more
#VU59840 - Use After Free
CVE-2021-4154
CWE-416 Low
Available
No
10.1.11 19.01.2022 SB2022011939
SB2022011940
SB2022011941
and 22 more
#VU59695 - Integer overflow
CVE-2022-0185
CWE-190 Low
Available
Exploited
10.1.11 18.01.2022 SB2022011820
SB2022011932
SB2022011937
and 33 more
#VU59084 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-20321
CWE-362 Low
No
No
10.1.11 22.12.2021 SB2021122207
SB2021122216
SB2021122218
and 29 more
#VU58477 - Heap-based Buffer Overflow
CVE-2021-43527
CWE-122 High
No
No
10.1.10 01.12.2021 SB2021120123
SB2021120124
SB2021120201
and 66 more
#VU58207 - Excessive Iteration
CVE-2021-28950
CWE-834 Low
No
No
10.1.11 17.11.2021 SB2021032004
SB2021112303
SB2021112304
and 37 more
#VU56240 - Memory corruption
CVE-2021-29650
CWE-119 Low
No
No
10.1.11 01.09.2021 SB2021033033
SB2021090127
SB2021090128
and 44 more
#VU55499 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2020-7789
CWE-78 High
No
No
10.1.17.1 02.08.2021 SB2020121118
SB2021080213
SB2023071326
and 2 more


Showing elements 21 - 40 out of 397