Known vulnerabilities in Storage Ceph - page 5

Software: Storage Ceph
Software CPE: cpe:2.3:a:ibm_corporation:storage_ceph:*:*:*:*:*:*:*:*
Total vulnerabilities: 180
Public exploits: 13
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Storage Ceph Storage Ceph is affected by 180 known vulnerabilities: 1 critical, 13 high, 101 medium, 65 low Critical High Medium Low

Vulnerabilities (180)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU89711 - NULL Pointer Dereference
CVE-2024-33600
CWE-476 Medium
No
No
7.1 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 83 more
#VU88822 - Memory corruption
CVE-2024-2961
CWE-119 High
Available
Exploited
7.1 18.04.2024 SB2024041855
SB2024041856
SB2024041857
and 107 more
#VU85623 - Information Exposure Through Timing Discrepancy
CVE-2024-0553
CWE-208 Medium
No
No
7.0z1 21.01.2024 SB2024012105
SB2024012106
SB2024012234
and 78 more
#VU83316 - Information Exposure Through Timing Discrepancy
CVE-2023-5981
CWE-208 Medium
No
No
7.0z1 20.11.2023 SB2023112075
SB2023112145
SB2023120164
and 79 more
#VU82112 - Improper Authorization
CVE-2023-43040
CWE-285 Medium
Available
No
6.1z2 17.10.2023 SB2023101761
SB2023112450
SB2024012922
and 5 more
#VU81863 - External Control of File Name or Path
CVE-2023-38546
CWE-73 Low
No
No
6.1z6 11.10.2023 SB2023101129
SB2023101135
SB2023101149
and 125 more
#VU79523 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35939
CWE-59 Low
No
No
6.1z5 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU79522 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2021-35937
CWE-367 Low
No
No
7.0 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU74196 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-28486
CWE-78 Low
No
No
6.1z5 30.03.2023 SB2023033028
SB2023033038
SB2023033039
and 31 more
#VU72321 - Improper Privilege Management
CVE-2022-36109
CWE-269 Low
No
No
7.1 16.02.2023 SB2023021619
SB2023021620
SB2023031742
and 14 more
#VU64818 - Resource exhaustion
CVE-2018-20699
CWE-400 Low
No
No
7.1 30.06.2022 SB2019031323
SB2023051543
SB2023051622
and 5 more
#VU64416 - Improper preservation of permissions
CVE-2021-41091
CWE-281 Low
Available
No
7.1 15.06.2022 SB2021100419
SB2022061528
SB2021101264
and 13 more
#VU64415 - Improper preservation of permissions
CVE-2021-41089
CWE-281 Low
No
No
7.1 15.06.2022 SB2021100419
SB2022061528
SB2021101264
and 14 more
#VU61600 - Permissions, Privileges, and Access Controls
CVE-2022-24769
CWE-264 Medium
No
No
7.1 24.03.2022 SB2022032414
SB2022032503
SB2022042141
and 29 more
#VU21707 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2016-10735
CWE-79 Low
No
No
6.1z2 10.10.2019 SB2019010911
SB2019101009
SB2020093090
and 21 more
#VU17694 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-8331
CWE-79 Low
No
No
6.1z2 14.02.2019 SB2019021412
SB2019031501
SB2019101009
and 28 more
#VU31245 - Improper Link Resolution Before File Access ('Link Following')
CVE-2017-7500
CWE-59 Low
No
No
7.0 13.08.2018 SB2018081318
SB2018102434
SB2018080623
and 14 more
#VU13902 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2018-14042
CWE-79 Low
No
No
6.1z2 18.07.2018 SB2018071803
SB2020093090
SB2020110508
and 22 more
#VU13901 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2018-14040
CWE-79 Low
No
No
6.1z2 17.07.2018 SB2018071803
SB2019031501
SB2020093090
and 24 more
#VU31396 - Improper Link Resolution Before File Access ('Link Following')
CVE-2017-7501
CWE-59 Low
No
No
7.0 22.11.2017 SB2017112213
SB2018102434
SB2022110933
and 13 more


Showing elements 81 - 100 out of 180