Known vulnerabilities in IBM SPSS Analytic Server - page 4

Software CPE: cpe:2.3:a:ibm_corporation:ibm_spss_analytic_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 68
Public exploits: 6
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM SPSS Analytic Server IBM SPSS Analytic Server is affected by 68 known vulnerabilities: 9 high, 47 medium, 12 low Critical High Medium Low

Vulnerabilities (68)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU73970 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-48285
CWE-22 Medium
No
No
- 23.03.2023 SB2023032314
SB2023032315
SB2023042510
and 22 more
#VU72075 - Insecure Temporary File
CVE-2023-0482
CWE-377 Low
No
No
- 08.02.2023 SB2023020877
SB2023033003
SB2023033004
and 36 more
#VU69209 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-34165
CWE-444 Medium
No
No
- 10.11.2022 SB2022111029
SB2022111104
SB2022111409
and 58 more
#VU64957 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-33980
CWE-94 High
Available
No
3.4.0.0.1 06.07.2022 SB2022070645
SB2022072604
SB2022081517
and 31 more
#VU64197 - Improper Authentication
CVE-2022-22475
CWE-287 Low
No
No
- 13.06.2022 SB2022061307
SB2022061310
SB2022062218
and 26 more
#VU59970 - Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')
CVE-2021-39031
CWE-90 Medium
No
No
- 25.01.2022 SB2022012506
SB2022032317
SB2022041207
and 12 more
#VU59051 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-45105
CWE-835 Medium
Available
No
- 18.12.2021 SB2021121802
SB2021121903
SB2021122011
and 169 more
#VU58976 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-45046
CWE-94 High
Available
Exploited
- 15.12.2021 SB2021121504
SB2021121511
SB2021121512
and 178 more


Showing elements 61 - 80 out of 68