Known vulnerabilities in IBM Workload Automation
Vendor:
IBM Corporation
Software:
IBM Workload Automation
Software CPE:
cpe:2.3:a:ibm_corporation:ibm_workload_automation:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
17
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
Vulnerabilities (17)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU89624 - Resource Management Errors CVE-2024-4603 |
CWE-399 | Low | 10.2.2 | 17.05.2024 |
SB2024051715 SB2024052732 SB2024060735 and 65 more |
||
| #VU88977 - Resource exhaustion CVE-2024-25026 |
CWE-400 | Medium | 10.1.0.5, 10.2.3 | 24.04.2024 |
SB2024042458 SB2024042525 SB2024042626 and 68 more |
||
| #VU88803 - Server-Side Request Forgery (SSRF) CVE-2024-22329 |
CWE-918 | Medium | 10.1.0.5, 10.2.3 | 18.04.2024 |
SB2024041812 SB2024042613 SB2024043016 and 67 more |
||
| #VU88802 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2024-22354 |
CWE-611 | High | 10.1.0.5, 10.2.3 | 18.04.2024 |
SB2024041812 SB2024042628 SB2024050920 and 66 more |
||
| #VU80741 - Improper Certificate Validation CVE-2012-5783 |
CWE-295 | Medium | 9.5.0.7, 10.1.0.5, 10.2.2 | 13.09.2023 |
SB2023091335 SB2023091521 SB2023092013 and 20 more |
||
| #VU76906 - Out-of-bounds read CVE-2023-2597 |
CWE-125 | High | 9.5.0.7, 10.1.0.4 | 05.06.2023 |
SB2023060525 SB2023060705 SB2023060930 and 86 more |
||
| #VU76651 - Resource Management Errors CVE-2023-2650 |
CWE-399 | Medium | 9.5.0.7, 10.1.0.4 | 30.05.2023 |
SB2023053040 SB2023053044 SB2023053045 and 131 more |
||
| #VU75264 - Improper input validation CVE-2023-21939 |
CWE-20 | Medium | 9.5.0.7, 10.1.0.4 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 179 more |
||
| #VU75265 - Improper input validation CVE-2023-21938 |
CWE-20 | Low | 9.5.0.7, 10.1.0.4 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 181 more |
||
| #VU75266 - Improper input validation CVE-2023-21968 |
CWE-20 | Low | 9.5.0.7, 10.1.0.4 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 179 more |
||
| #VU75267 - Improper input validation CVE-2023-21937 |
CWE-20 | Low | 9.5.0.7, 10.1.0.4 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 184 more |
||
| #VU75260 - Improper input validation CVE-2023-21930 |
CWE-20 | Medium | 9.5.0.7, 10.1.0.4 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 191 more |
||
| #VU75261 - Improper input validation CVE-2023-21967 |
CWE-20 | Medium | 9.5.0.7, 10.1.0.4 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 189 more |
||
| #VU75262 - Improper input validation CVE-2023-21954 |
CWE-20 | Medium | 9.5.0.7, 10.1.0.4 | 18.04.2023 |
SB20230418166 SB20230418167 SB2023041942 and 166 more |
||
| #VU74149 - Security Features CVE-2023-0466 |
CWE-254 | Low | 9.5.0.7, 10.1.0.4 | 28.03.2023 |
SB2023032241 SB2023040666 SB2023040730 and 86 more |
||
| #VU74148 - Improper Verification of Cryptographic Signature CVE-2023-0465 |
CWE-347 | Low | 9.5.0.7, 10.1.0.4 | 28.03.2023 |
SB2023032241 SB2023040666 SB2023040730 and 100 more |
||
| #VU73960 - Resource exhaustion CVE-2023-0464 |
CWE-400 | Medium | 9.5.0.7, 10.1.0.4 | 22.03.2023 |
SB2023032241 SB2023033057 SB2023033058 and 100 more |