Known vulnerabilities in Storage Ceph - page 3

Software: Storage Ceph
Software CPE: cpe:2.3:a:ibm_corporation:storage_ceph:*:*:*:*:*:*:*:*
Total vulnerabilities: 180
Public exploits: 13
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Storage Ceph Storage Ceph is affected by 180 known vulnerabilities: 1 critical, 13 high, 101 medium, 65 low Critical High Medium Low

Vulnerabilities (180)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU97701 - Improper input validation
CVE-2022-25860
CWE-20 High
No
No
7.1 25.09.2024 SB2024092530
SB2024092531
#VU96055 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2024-42353
CWE-601 Low
No
No
8.1 15.08.2024 SB2024081552
SB2024081555
SB2024081556
and 44 more
#VU89655 - Command injection
CVE-2022-25908
CWE-77 Low
No
No
7.1 20.05.2024 SB2024052013
SB2024092531
#VU89615 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-25912
CWE-78 High
No
No
7.1 17.05.2024 SB2024051714
SB2024092531
#VU86052 - Use After Free
CVE-2024-25062
CWE-416 High
No
No
7.1 05.02.2024 SB2024020507
SB2024020508
SB2024020742
and 115 more
#VU85210 - Improper input validation
CVE-2024-21319
CWE-20 Low
No
No
7.1 09.01.2024 SB2024010971
SB2024011058
SB2024011059
and 11 more
#VU83439 - Insufficiently Protected Credentials
CVE-2023-35789
CWE-522 Low
No
No
6.1z3 22.11.2023 SB2023112242
SB20231018146
SB2023112309
and 6 more
#VU83291 - Use After Free
CVE-2023-45322
CWE-416 Low
No
No
7.1 20.11.2023 SB2023112027
SB2023112031
SB2023112032
and 16 more
#VU82978 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45803
CWE-200 Medium
No
No
7.1 10.11.2023 SB2023111038
SB2023111040
SB2023111048
and 122 more
#VU82349 - Cryptographic Issues
CVE-2023-5363
CWE-310 Low
No
No
7.0z1 24.10.2023 SB2023102443
SB2023102448
SB2023102534
and 46 more
#VU77531 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-29405
CWE-94 Medium
No
No
- 19.06.2023 SB2023061954
SB2023061955
SB2023061956
and 45 more
#VU77530 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-29404
CWE-94 Medium
No
No
- 19.06.2023 SB2023061954
SB2023061955
SB2023061956
and 44 more
#VU75388 - Out-of-bounds read
CVE-2023-1255
CWE-125 Low
No
No
6.1z1 20.04.2023 SB2023042039
SB2023053044
SB2023061445
and 25 more
#VU72340 - Improper input validation
CVE-2023-23934
CWE-20 Low
No
No
8.1 16.02.2023 SB2023021673
SB2023031332
SB2023031613
and 33 more
#VU71740 - Exposure of sensitive information to an unauthorized actor
CVE-2022-23498
CWE-200 Medium
No
No
6.1 01.02.2023 SB2023020152
SB2023121104
SB2024020931
and 1 more
#VU69942 - Incorrect Regular Expression
CVE-2022-3517
CWE-185 Medium
No
No
6.1 06.12.2022 SB2022120638
SB2022120639
SB2022120640
and 48 more
#VU64805 - Improper input validation
CVE-2021-43565
CWE-20 Medium
No
No
7.1 29.06.2022 SB2021120347
SB2022062928
SB2022072127
and 39 more
#VU62039 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-27191
CWE-327 Medium
No
No
7.1 10.04.2022 SB2022041004
SB2022041406
SB2022081226
and 91 more
#VU59833 - Exposure of sensitive information to an unauthorized actor
CVE-2021-23566
CWE-200 Low
No
No
7.1 19.01.2022 SB2022011925
SB2022032843
SB2022061711
and 10 more
#VU50273 - Permissions, Privileges, and Access Controls
CVE-2021-21284
CWE-264 Medium
No
No
7.1 02.02.2021 SB2021020305
SB2021020611
SB2021020922
and 9 more


Showing elements 41 - 60 out of 180