Known vulnerabilities in Voice Gateway - page 13

Software: Voice Gateway
Software CPE: cpe:2.3:a:ibm_corporation:voice_gateway:*:*:*:*:*:*:*:*
Total vulnerabilities: 270
Public exploits: 16
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Voice Gateway Voice Gateway is affected by 270 known vulnerabilities: 1 critical, 38 high, 158 medium, 73 low Critical High Medium Low

Vulnerabilities (270)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU71593 - Session Fixation
CVE-2022-36437
CWE-384 High
No
No
1.0.8.2, 1.0.8.6 27.01.2023 SB2023012717
SB2023012719
SB2023013117
and 1 more
#VU70444 - Server-Side Request Forgery (SSRF)
CVE-2022-46364
CWE-918 Medium
No
No
1.0.8.2, 1.0.8.6 20.12.2022 SB2022122009
SB2023011329
SB2023011707
and 67 more
#VU70385 - Deserialization of Untrusted Data
CVE-2022-1471
CWE-502 High
Available
No
1.0.8.2, 1.0.8.6 15.12.2022 SB2022121539
SB2022121540
SB2022121928
and 124 more
#VU69337 - Integer overflow
CVE-2022-42898
CWE-190 Medium
No
No
1.0.8.1, 1.0.8.2, 1.0.8.5 15.11.2022 SB2022111530
SB2022111610
SB2022111621
and 123 more
#VU68376 - Integer overflow
CVE-2022-3515
CWE-190 High
No
No
1.0.8.1, 1.0.8.2, 1.0.8.5 18.10.2022 SB2022101805
SB2022101807
SB2022101808
and 64 more
#VU66153 - Heap-based Buffer Overflow
CVE-2022-37434
CWE-122 High
Available
No
1.0.8.1, 1.0.8.2, 1.0.8.5 07.08.2022 SB2022080705
SB2022081833
SB2022081851
and 154 more
#VU66123 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2016-3709
CWE-79 Medium
No
No
1.0.8.1, 1.0.8.2, 1.0.8.5 05.08.2022 SB2022080507
SB2022080510
SB2022080808
and 43 more
#VU65915 - Double Free
CVE-2022-2509
CWE-415 High
No
No
1.0.8.1, 1.0.8.2, 1.0.8.5 02.08.2022 SB2022080207
SB2022080208
SB2022080509
and 54 more
#VU64909 - Improper Verification of Cryptographic Signature
CVE-2022-34903
CWE-347 Medium
No
No
1.0.8.4 04.07.2022 SB2022070429
SB2022070443
SB2022070521
and 58 more
#VU64573 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2015-20107
CWE-78 High
No
No
1.0.8.4 22.06.2022 SB2022062206
SB2022062207
SB2022062436
and 85 more
#VU64152 - Deserialization of Untrusted Data
CVE-2022-25647
CWE-502 Medium
No
No
1.0.8.2, 1.0.8.6 10.06.2022 SB2021120221
SB2022061003
SB2022061421
and 94 more
#VU64075 - Out-of-bounds write
CVE-2022-1304
CWE-787 Low
No
No
1.0.8.1, 1.0.8.2, 1.0.8.5 08.06.2022 SB2022060814
SB2022060815
SB2022060830
and 66 more
#VU61254 - Use After Free
CVE-2021-22940
CWE-416 Medium
No
No
1.0.7.2, 1.0.7.10 11.03.2022 SB2021081615
SB2022031104
SB2022060618
and 23 more
#VU59234 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-22960
CWE-444 Medium
No
No
1.0.7.2, 1.0.7.10 05.01.2022 SB2022010523
SB2022010524
SB2022042806
and 40 more
#VU59233 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-22959
CWE-444 Medium
No
No
1.0.7.2, 1.0.7.10 05.01.2022 SB2022010523
SB2022010524
SB2022011841
and 43 more
#VU57498 - Improper input validation
CVE-2021-22931
CWE-20 High
No
No
1.0.7.2, 1.0.7.10 19.10.2021 SB2021101945
SB2022020113
SB2022031104
and 28 more
#VU55560 - Use After Free
CVE-2021-22930
CWE-416 High
No
No
1.0.7.2, 1.0.7.10 03.08.2021 SB2021080320
SB2021080324
SB2021080325
and 35 more
#VU52448 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-2161
CWE-94 Medium
No
No
1.0.7.9 21.04.2021 SB2021042115
SB2021042116
SB2021042117
and 45 more
#VU22577 - Resource Management Errors
CVE-2019-12406
CWE-399 Medium
No
No
1.0.8.2, 1.0.8.6 07.11.2019 SB2019110708
SB2020073033
SB2022101121
and 4 more
#VU11285 - Data Handling
CVE-2017-12624
CWE-19 Low
No
No
1.0.8.2, 1.0.8.6 27.03.2018 SB2017111431
SB2018072004
SB2018110715
and 5 more


Showing elements 241 - 260 out of 270