Known vulnerabilities in webMethods Managed File Transfer - page 4

Software CPE: cpe:2.3:a:ibm_corporation:webmethods_managed_file_transfer:*:*:*:*:*:*:*:*
Total vulnerabilities: 90
Public exploits: 5
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting webMethods Managed File Transfer webMethods Managed File Transfer is affected by 90 known vulnerabilities: 1 critical, 7 high, 59 medium, 23 low Critical High Medium Low

Vulnerabilities (90)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU94716 - Out-of-bounds read
CVE-2024-6874
CWE-125 Medium
No
No
- 24.07.2024 SB2024072431
SB2024081362
SB2024091242
and 6 more
#VU94715 - Double Free
CVE-2024-6197
CWE-415 Medium
No
No
- 24.07.2024 SB2024072431
SB2024080568
SB20240806402
and 11 more
#VU89711 - NULL Pointer Dereference
CVE-2024-33600
CWE-476 Medium
No
No
- 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 83 more
#VU89430 - Heap-based Buffer Overflow
CVE-2024-34459
CWE-122 Medium
No
No
- 14.05.2024 SB2024051432
SB2024051433
SB2024051631
and 31 more
#VU89351 - Insufficient Verification of Data Authenticity
CVE-2024-34397
CWE-345 Low
No
No
- 10.05.2024 SB2024051042
SB2024051043
SB2024051044
and 88 more
#VU88211 - Resource exhaustion
CVE-2024-2511
CWE-400 Medium
No
No
- 08.04.2024 SB2024040853
SB2024042960
SB2024051069
and 91 more
#VU87852 - Improper Validation of Certificate with Host Mismatch
CVE-2024-2466
CWE-297 Medium
No
No
- 27.03.2024 SB2024032713
SB2024032748
SB2024061844
and 14 more
#VU87848 - Improper Certificate Validation
CVE-2024-2379
CWE-295 Low
No
No
- 27.03.2024 SB2024032713
SB2024032748
SB2024061844
and 12 more
#VU87846 - Improper input validation
CVE-2024-2004
CWE-20 Low
No
No
- 27.03.2024 SB2024032713
SB2024032740
SB2024032748
and 28 more
#VU84985 - Out-of-bounds read
CVE-2023-7104
CWE-125 Medium
No
No
- 04.01.2024 SB2024010417
SB2024010420
SB2024010516
and 108 more
#VU84538 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-6004
CWE-78 Medium
No
No
- 19.12.2023 SB2023121905
SB2023121906
SB2023121910
and 58 more
#VU84082 - Out-of-bounds write
CVE-2020-19188
CWE-787 Medium
No
No
- 11.12.2023 SB2023121144
SB2023121146
SB2023121148
and 5 more
#VU81453 - Use After Free
CVE-2023-4813
CWE-416 Medium
No
No
- 04.10.2023 SB2023100435
SB2023100579
SB2023100581
and 91 more
#VU81447 - Use After Free
CVE-2023-4806
CWE-416 Medium
No
No
- 03.10.2023 SB2023100363
SB2023100402
SB2023100418
and 97 more
#VU81437 - Memory corruption
CVE-2023-4911
CWE-119 Low
Available
Exploited
- 03.10.2023 SB2023100343
SB2023100345
SB2023100402
and 94 more
#VU81097 - Out-of-bounds read
CVE-2023-4527
CWE-125 Medium
No
No
- 25.09.2023 SB2023092525
SB2023100345
SB2023100402
and 79 more
#VU79522 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2021-35937
CWE-367 Low
No
No
- 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU79521 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35938
CWE-59 Low
No
No
- 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU75141 - Memory corruption
CVE-2023-29491
CWE-119 Low
No
No
- 14.04.2023 SB2023041454
SB2023052328
SB2023052346
and 132 more
#VU57577 - Out-of-bounds write
CVE-2021-39537
CWE-787 High
No
No
- 21.10.2021 SB2021102119
SB2022061419
SB2021102025
and 18 more


Showing elements 61 - 80 out of 90