Known vulnerabilities in Storage Ceph - page 2

Software: Storage Ceph
Software CPE: cpe:2.3:a:ibm_corporation:storage_ceph:*:*:*:*:*:*:*:*
Total vulnerabilities: 180
Public exploits: 13
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Storage Ceph Storage Ceph is affected by 180 known vulnerabilities: 1 critical, 13 high, 101 medium, 65 low Critical High Medium Low

Vulnerabilities (180)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU105983 - Resource exhaustion
CVE-2025-30204
CWE-400 Medium
No
No
7.1z6 24.03.2025 SB2025032475
SB2025032730
SB2025040333
and 97 more
#VU105452 - Server-Side Request Forgery (SSRF)
CVE-2025-27152
CWE-918 Medium
Available
No
8.1z1 07.03.2025 SB2025030777
SB2025031918
SB2025032417
and 42 more
#VU101894 - Insufficient Technical Documentation
CVE-2024-51744
CWE-1059 Low
No
No
7.1z6 23.12.2024 SB2024122304
SB2024122309
SB20241230139
and 21 more
#VU101777 - Improper Authorization
CVE-2024-45337
CWE-285 Medium
Available
No
8.1z1 13.12.2024 SB2024121332
SB2024121333
SB2024121334
and 93 more
#VU101383 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-36621
CWE-362 Low
No
No
8.1z1 10.12.2024 SB2024121030
SB2024121039
SB2024121040
and 9 more
#VU99567 - Resource exhaustion
CVE-2024-49767
CWE-400 Medium
No
No
8.1 31.10.2024 SB2024103173
SB2024103176
SB2024110601
and 30 more
#VU99566 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-49766
CWE-22 Medium
No
No
8.1 31.10.2024 SB2024103173
SB2024121313
SB2024121851
and 16 more
#VU98048 - Improper Authentication
CVE-2024-47191
CWE-287 Low
No
No
8.1 05.10.2024 SB2024100508
SB2024100513
SB2024100514
and 19 more
#VU97758 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2024-45801
CWE-1321 Medium
No
No
8.1 27.09.2024 SB2024092751
SB2024100823
SB2024100827
and 32 more
#VU89210 - Incorrect Authorization
CVE-2023-6152
CWE-863 Low
No
No
7.1z3 07.05.2024 SB2024050715
SB2024050717
SB2024050718
and 8 more
#VU89149 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-34069
CWE-94 Medium
No
No
8.1 06.05.2024 SB2024050606
SB2024050723
SB2024050930
and 54 more
#VU87845 - Improper Authorization
CVE-2024-1313
CWE-285 Medium
No
No
7.1z3 27.03.2024 SB2024032711
SB2024043089
SB2024050720
and 10 more
#VU87538 - Resource exhaustion
CVE-2024-28180
CWE-400 Medium
No
No
7.1z3 14.03.2024 SB2024031446
SB2024031447
SB2024031448
and 106 more
#VU86049 - Insufficient Verification of Data Authenticity
CVE-2024-24557
CWE-345 Medium
No
No
8.1z1 02.02.2024 SB2024020242
SB2024032237
SB2024032712
and 18 more
#VU82558 - Cross-Site Request Forgery (CSRF)
CVE-2023-45857
CWE-352 Low
No
No
8.1 30.10.2023 SB2023103024
SB2023113014
SB2023121224
and 41 more
#VU82548 - Inefficient Algorithmic Complexity
CVE-2023-46136
CWE-407 Medium
No
No
8.1 30.10.2023 SB2023103003
SB2023103183
SB2023112907
and 73 more
#VU80323 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2023-26136
CWE-1321 High
No
No
8.1 04.09.2023 SB2023090411
SB2023090423
SB2023090816
and 42 more
#VU72630 - Incorrect Default Permissions
CVE-2022-3650
CWE-276 Low
No
No
5.3z1 28.02.2023 SB2023022857
SB2023022873
SB2023030907
and 10 more
#VU72339 - Resource exhaustion
CVE-2023-25577
CWE-400 Medium
No
No
8.1 16.02.2023 SB2023021673
SB2023022875
SB2023031332
and 49 more
#VU71398 - Insufficient Verification of Data Authenticity
CVE-2022-23491
CWE-345 High
No
No
8.1 20.01.2023 SB2023012034
SB2023012035
SB2023012036
and 51 more


Showing elements 21 - 40 out of 180