Known vulnerabilities in IBM SPSS Analytic Server

Software CPE: cpe:2.3:a:ibm_corporation:ibm_spss_analytic_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 68
Public exploits: 6
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM SPSS Analytic Server IBM SPSS Analytic Server is affected by 68 known vulnerabilities: 9 high, 47 medium, 12 low Critical High Medium Low

Vulnerabilities (68)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU139055 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-8646
CWE-444 High
No
No
- 22.07.2026 SB2026072215
SB2026072219
SB2026072328
and 6 more
#VU139054 - Resource exhaustion
CVE-2026-9320
CWE-400 Medium
No
No
- 22.07.2026 SB2026072214
SB2026072219
SB2026072328
and 6 more
#VU137316 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-11806
CWE-444 Medium
No
No
- 10.07.2026 SB2026071039
SB2026071040
SB2026071045
and 4 more
#VU137314 - Resource exhaustion
CVE-2026-9071
CWE-400 Low
No
No
- 10.07.2026 SB2026071036
SB2026071037
SB2026072219
and 7 more
#VU135124 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-11541
CWE-444 High
No
No
- 24.06.2026 SB2026062445
SB2026062950
SB2026063026
and 14 more
#VU133913 - Resource exhaustion
CVE-2026-50560
CWE-400 Medium
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070933
#VU133457 - Incorrect Comparison
CVE-2026-44249
CWE-697 High
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070933
and 2 more
#VU133456 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-50020
CWE-444 Medium
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070933
and 1 more
#VU133452 - Improper Certificate Validation
CVE-2026-50010
CWE-295 Medium
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070933
and 2 more
#VU133451 - Generation of Predictable Numbers or Identifiers
CVE-2026-45673
CWE-340 Medium
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070933
and 1 more
#VU133450 - Uncontrolled Memory Allocation
CVE-2026-45416
CWE-789 Medium
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070110
and 4 more
#VU133449 - Missing Release of Resource after Effective Lifetime
CVE-2026-45536
CWE-772 Low
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070933
#VU133448 - Insufficient Verification of Data Authenticity
CVE-2026-45674
CWE-345 High
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070933
and 1 more
#VU133445 - Resource exhaustion
CVE-2026-47244
CWE-400 Medium
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070933
#VU133444 - Insufficient Verification of Data Authenticity
CVE-2026-47691
CWE-345 High
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070933
and 1 more
#VU133441 - Missing Release of Resource after Effective Lifetime
CVE-2026-48043
CWE-772 Medium
No
No
- 08.06.2026 SB2026060813
SB20260626101
SB2026070933
and 1 more
#VU130211 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-42580
CWE-444 Medium
No
No
- 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 4 more
#VU130209 - Missing Release of Resource after Effective Lifetime
CVE-2026-42577
CWE-772 Medium
No
No
- 05.05.2026 SB20260505124
SB20260528254
#VU130206 - Allocation of Resources Without Limits or Throttling
CVE-2026-42583
CWE-770 Medium
No
No
- 05.05.2026 SB20260505124
SB2026052039
SB20260528254
and 8 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
- 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 648 more


Showing elements 1 - 20 out of 68