Known vulnerabilities in Log Analysis 1.3.7.2 IF003A

Software: Log Analysis
Version: 1.3.7.2 IF003A
Software CPE: cpe:2.3:a:ibm_corporation:log_analysis:*:*:*:*:*:*:*:*
Total vulnerabilities: 34
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Log Analysis version 1.3.7.2 IF003A Log Analysis 1.3.7.2 IF003A is affected by 34 vulnerabilities: 4 high, 19 medium, 11 low Critical High Medium Low

Vulnerabilities (34)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU115571 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2025-36000
CWE-79 Low
No
No
1.3.8.2 16.09.2025 SB20250916311
SB20250916316
SB2025092515
and 25 more
#VU115568 - Allocation of Resources Without Limits or Throttling
CVE-2025-36047
CWE-770 Medium
No
No
1.3.8.2 16.09.2025 SB20250916312
SB20250916316
SB20250916321
and 29 more
#VU114006 - Privilege Chaining
CVE-2025-36124
CWE-268 High
No
No
1.3.8.2 13.08.2025 SB2025081354
SB2025082918
SB2025082921
and 23 more
#VU113074 - Stack-based buffer overflow
CVE-2025-36097
CWE-121 High
No
No
- 18.07.2025 SB20250718100
SB2025072128
SB2025072307
and 43 more
#VU111162 - Resource exhaustion
CVE-2025-48976
CWE-400 Medium
Public exploit available
No
1.3.8.2 16.06.2025 SB2025061634
SB2025061635
SB2025061927
and 156 more
#VU105112 - Resource exhaustion
CVE-2025-23184
CWE-400 Medium
No
No
- 28.02.2025 SB2025022807
SB2025030340
SB2025041017
and 40 more
#VU103769 - Resource exhaustion
CVE-2025-25193
CWE-400 Low
No
No
- 11.02.2025 SB2025021186
SB202502197190
SB2025030409
and 56 more
#VU103325 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-52012
CWE-22 Medium
No
No
1.3.8.2 27.01.2025 SB2025012737
SB2025041544
SB2026022019
#VU100259 - Resource Management Errors
CVE-2024-47535
CWE-399 Low
No
No
- 12.11.2024 SB2024111299
SB2024122313
SB2025012061
and 79 more
#VU97712 - Incorrect Default Permissions
CVE-2024-23454
CWE-276 Low
No
No
1.3.8.2 26.09.2024 SB2024092604
SB20241108105
SB20241108106
and 14 more
#VU89219 - Observable discrepancy
CVE-2024-30171
CWE-203 Medium
No
No
1.3.8.2 07.05.2024 SB2024050731
SB2024050734
SB2024061019
and 59 more
#VU87570 - Improper Access Control
CVE-2024-23944
CWE-284 Low
No
No
1.3.8.2 15.03.2024 SB2024031533
SB2024052921
SB2024061902
and 23 more
#VU86635 - Unrestricted Upload of File with Dangerous Type
CVE-2023-50386
CWE-434 Medium
Public exploit available
No
1.3.8.2 20.02.2024 SB2024022041
SB2024041019
SB2024041643
and 3 more
#VU86633 - Incorrect Permission Assignment for Critical Resource
CVE-2023-50292
CWE-732 High
No
No
1.3.8.2 20.02.2024 SB2024022039
SB2024041019
SB2024082816
and 1 more
#VU86632 - Insufficiently Protected Credentials
CVE-2023-50291
CWE-522 Low
No
No
1.3.8.2 20.02.2024 SB2024022039
SB2024041019
SB2024082816
and 1 more
#VU86631 - Exposure of sensitive information to an unauthorized actor
CVE-2023-50298
CWE-200 Medium
No
No
1.3.8.2 20.02.2024 SB2024022040
SB2024041019
SB2024082816
and 2 more
#VU77778 - Improper input validation
CVE-2022-29546
CWE-20 Low
No
No
1.3.8.1 28.06.2023 SB2022050443
SB20230719104
SB20231018117
and 10 more
#VU77777 - Improper input validation
CVE-2022-28366
CWE-20 Low
No
No
1.3.8.1 28.06.2023 SB2022042155
SB2023112475
SB2023121271
and 7 more
#VU65486 - Improper input validation
CVE-2022-24839
CWE-20 Medium
No
No
1.3.8.1 20.07.2022 SB2022072038
SB2022102803
SB2022102807
and 31 more
#VU18092 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2019-11358
CWE-1321 Low
Public exploit available
No
1.3.8.2 IF001 28.03.2019 SB2019032804
SB2019041026
SB2019041801
and 155 more


Showing elements 1 - 20 out of 34