Known vulnerabilities in Netcool Operations Insight - page 26

Software CPE: cpe:2.3:a:ibm_corporation:netcool_operations_insight:*:*:*:*:*:*:*:*
Total vulnerabilities: 617
Public exploits: 62
Known exploited (KEV): 11
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Netcool Operations Insight Netcool Operations Insight is affected by 617 known vulnerabilities: 5 critical, 106 high, 363 medium, 143 low Critical High Medium Low

Vulnerabilities (617)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU69935 - Improper Verification of Cryptographic Signature
CVE-2021-44878
CWE-347 Medium
No
No
1.6.6 06.12.2022 SB2022120629
SB2023010611
#VU68307 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-42889
CWE-94 High
Available
Exploited
1.6.8 14.10.2022 SB2022101405
SB2022102709
SB2022110306
and 91 more
#VU66063 - Resource exhaustion
CVE-2022-30630
CWE-400 Medium
No
No
1.6.9 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 79 more
#VU66062 - Resource exhaustion
CVE-2022-30631
CWE-400 Medium
No
No
1.6.9 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 100 more
#VU65486 - Improper input validation
CVE-2022-24839
CWE-20 Medium
No
No
1.6.6 20.07.2022 SB2022072038
SB2022102803
SB2022102807
and 31 more
#VU65264 - Unrestricted Upload of File with Dangerous Type
CVE-2022-29622
CWE-434 High
Available
No
1.6.6 13.07.2022 SB2022071326
SB2022072212
SB2022120629
and 2 more
#VU64865 - Improper Control of Dynamically-Managed Code Resources
CVE-2022-25878
CWE-913 High
No
No
1.6.6 04.07.2022 SB2022070404
SB2022120629
SB2023052313
and 2 more
#VU61669 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0155
CWE-200 Low
No
No
1.6.6 28.03.2022 SB2022032840
SB2022032843
SB2022071505
and 32 more
#VU61668 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0536
CWE-200 Low
No
No
1.6.6 28.03.2022 SB2022032841
SB2022032843
SB2022042561
and 27 more
#VU61394 - UNIX Symbolic Link (Symlink) Following
CVE-2021-31566
CWE-61 Low
No
No
1.6.6 15.03.2022 SB2022031530
SB2022031601
SB2022032445
and 27 more
#VU61393 - UNIX Symbolic Link (Symlink) Following
CVE-2021-23177
CWE-61 Low
No
No
1.6.6 15.03.2022 SB2022031530
SB2022031601
SB2022032445
and 25 more
#VU60922 - Use After Free
CVE-2022-23308
CWE-416 High
No
No
1.6.6 01.03.2022 SB2022030109
SB2022030110
SB2022031503
and 59 more
#VU60367 - Security Features
CVE-2022-24329
CWE-254 Medium
No
No
1.6.6 08.02.2022 SB2022020805
SB2022042218
SB2022071957
and 13 more
#VU57967 - Improper input validation
CVE-2021-3807
CWE-20 Medium
No
No
1.6.6 05.11.2021 SB2021110513
SB2021112603
SB2022042257
and 51 more
#VU56217 - Memory corruption
CVE-2021-3634
CWE-119 High
No
No
1.6.6 31.08.2021 SB2021083135
SB2021083136
SB2022011903
and 46 more
#VU52252 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-29425
CWE-22 Low
No
No
1.6.6 15.04.2021 SB2021041510
SB2021081922
SB2021093016
and 121 more
#VU51836 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-21295
CWE-444 Medium
No
No
1.6.6 01.04.2021 SB2021040115
SB2021040626
SB2021050706
and 26 more
#VU51835 - Cleartext Storage of Sensitive Information
CVE-2021-21290
CWE-312 Low
No
No
1.6.6 01.04.2021 SB2021020813
SB2021040626
SB2021050706
and 42 more
#VU50684 - Improper input validation
CVE-2020-13949
CWE-20 Medium
No
No
1.6.6 15.02.2021 SB2021021505
SB2021022701
SB2021030911
and 13 more
#VU48815 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-17530
CWE-94 High
Available
Exploited
1.6.6 08.12.2020 SB2020120801
SB2020122202
SB2021042111
and 9 more


Showing elements 501 - 520 out of 617