Known vulnerabilities in Log Analysis 1.3.8.1 IF001

Software: Log Analysis
Version: 1.3.8.1 IF001
Software CPE: cpe:2.3:a:ibm_corporation:log_analysis:*:*:*:*:*:*:*:*
Total vulnerabilities: 20
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Log Analysis version 1.3.8.1 IF001 Log Analysis 1.3.8.1 IF001 is affected by 20 vulnerabilities: 3 high, 9 medium, 8 low Critical High Medium Low

Vulnerabilities (20)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU115571 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2025-36000
CWE-79 Low
No
No
1.3.8.2 16.09.2025 SB20250916311
SB20250916316
SB2025092515
and 25 more
#VU115568 - Allocation of Resources Without Limits or Throttling
CVE-2025-36047
CWE-770 Medium
No
No
1.3.8.2 16.09.2025 SB20250916312
SB20250916316
SB20250916321
and 29 more
#VU114006 - Privilege Chaining
CVE-2025-36124
CWE-268 High
No
No
1.3.8.2 13.08.2025 SB2025081354
SB2025082918
SB2025082921
and 23 more
#VU113074 - Stack-based buffer overflow
CVE-2025-36097
CWE-121 High
No
No
- 18.07.2025 SB20250718100
SB2025072128
SB2025072307
and 43 more
#VU111162 - Resource exhaustion
CVE-2025-48976
CWE-400 Medium
Public exploit available
No
1.3.8.2 16.06.2025 SB2025061634
SB2025061635
SB2025061927
and 156 more
#VU105112 - Resource exhaustion
CVE-2025-23184
CWE-400 Medium
No
No
- 28.02.2025 SB2025022807
SB2025030340
SB2025041017
and 40 more
#VU103769 - Resource exhaustion
CVE-2025-25193
CWE-400 Low
No
No
- 11.02.2025 SB2025021186
SB202502197190
SB2025030409
and 56 more
#VU103325 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-52012
CWE-22 Medium
No
No
1.3.8.2 27.01.2025 SB2025012737
SB2025041544
SB2026022019
#VU103324 - Permissions, Privileges, and Access Controls
CVE-2025-24814
CWE-264 Low
No
No
1.3.8.2 27.01.2025 SB2025012737
SB2025041544
SB2025071613
and 1 more
#VU100259 - Resource Management Errors
CVE-2024-47535
CWE-399 Low
No
No
- 12.11.2024 SB2024111299
SB2024122313
SB2025012061
and 79 more
#VU98518 - Resource exhaustion
CVE-2024-9823
CWE-400 Medium
No
No
1.3.8.2 14.10.2024 SB20241014112
SB2024120637
SB2025011709
and 14 more
#VU98025 - Resource exhaustion
CVE-2024-47554
CWE-400 Medium
No
No
1.3.8.2 03.10.2024 SB2024100352
SB2024100421
SB2024101007
and 132 more
#VU97712 - Incorrect Default Permissions
CVE-2024-23454
CWE-276 Low
No
No
1.3.8.2 26.09.2024 SB2024092604
SB20241108105
SB20241108106
and 14 more
#VU89219 - Observable discrepancy
CVE-2024-30171
CWE-203 Medium
No
No
1.3.8.2 07.05.2024 SB2024050731
SB2024050734
SB2024061019
and 59 more
#VU87570 - Improper Access Control
CVE-2024-23944
CWE-284 Low
No
No
1.3.8.2 15.03.2024 SB2024031533
SB2024052921
SB2024061902
and 23 more
#VU86635 - Unrestricted Upload of File with Dangerous Type
CVE-2023-50386
CWE-434 Medium
Public exploit available
No
1.3.8.2 20.02.2024 SB2024022041
SB2024041019
SB2024041643
and 3 more
#VU86633 - Incorrect Permission Assignment for Critical Resource
CVE-2023-50292
CWE-732 High
No
No
1.3.8.2 20.02.2024 SB2024022039
SB2024041019
SB2024082816
and 1 more
#VU86632 - Insufficiently Protected Credentials
CVE-2023-50291
CWE-522 Low
No
No
1.3.8.2 20.02.2024 SB2024022039
SB2024041019
SB2024082816
and 1 more
#VU86631 - Exposure of sensitive information to an unauthorized actor
CVE-2023-50298
CWE-200 Medium
No
No
1.3.8.2 20.02.2024 SB2024022040
SB2024041019
SB2024082816
and 2 more
#VU18092 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2019-11358
CWE-1321 Low
Public exploit available
No
1.3.8.2 IF001 28.03.2019 SB2019032804
SB2019041026
SB2019041801
and 155 more