Known vulnerabilities in z/Transaction Processing Facility ( z/TPF) - page 4

Software CPE: cpe:2.3:a:ibm_corporation:ztpf:*:*:*:*:*:*:*:*
Total vulnerabilities: 127
Public exploits: 17
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting z/Transaction Processing Facility ( z/TPF) z/Transaction Processing Facility ( z/TPF) is affected by 127 known vulnerabilities: 51 high, 50 medium, 26 low Critical High Medium Low

Vulnerabilities (127)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU49374 - Deserialization of Untrusted Data
CVE-2020-36185
CWE-502 High
No
No
- 07.01.2021 SB2021011105
SB2021042826
SB2021050708
and 16 more
#VU49377 - Deserialization of Untrusted Data
CVE-2020-36189
CWE-502 High
No
No
- 07.01.2021 SB2021011105
SB2021042826
SB2021050708
and 17 more
#VU46305 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-24616
CWE-94 High
Available
No
- 25.08.2020 SB2020090706
SB2022060909
SB2022101121
and 14 more
#VU29131 - Deserialization of Untrusted Data
CVE-2020-14061
CWE-502 High
No
No
- 18.06.2020 SB2020061806
SB2020070320
SB2020073033
and 15 more
#VU27703 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2016-3720
CWE-611 High
No
No
- 12.05.2020 SB2016061003
SB2022101121
SB2021091803
and 6 more
#VU26490 - Deserialization of Untrusted Data
CVE-2020-11113
CWE-502 High
Available
No
- 01.04.2020 SB2020030909
SB2020042318
SB2020073033
and 16 more
#VU26488 - Deserialization of Untrusted Data
CVE-2020-11111
CWE-502 High
No
No
- 31.03.2020 SB2020030909
SB2020042318
SB2020073033
and 16 more
#VU25834 - Deserialization of Untrusted Data
CVE-2019-14893
CWE-502 High
No
No
- 09.03.2020 SB2020030911
SB2020031901
SB2022060909
and 15 more
#VU25833 - Deserialization of Untrusted Data
CVE-2019-14892
CWE-502 High
No
No
- 09.03.2020 SB2020030911
SB2020031901
SB2022060909
and 16 more
#VU25469 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-8840
CWE-94 Medium
Available
No
- 19.02.2020 SB2020021921
SB2020022615
SB2020061106
and 18 more
#VU24272 - Improper Access Control
CVE-2019-20330
CWE-284 Low
No
No
- 14.01.2020 SB2020010309
SB2020032709
SB2020042101
and 18 more
#VU22577 - Resource Management Errors
CVE-2019-12406
CWE-399 Medium
No
No
- 07.11.2019 SB2019110708
SB2020073033
SB2022101121
and 4 more
#VU21135 - Exposure of sensitive information to an unauthorized actor
CVE-2019-14540
CWE-200 Medium
Available
No
- 16.09.2019 SB2019091616
SB2019100716
SB2019102422
and 23 more
#VU19943 - Deserialization of Untrusted Data
CVE-2018-12023
CWE-502 Medium
No
No
- 06.08.2019 SB2019052407
SB2019091718
SB2019092703
and 20 more
#VU19933 - Permissions, Privileges, and Access Controls
CVE-2019-14379
CWE-264 High
No
No
- 05.08.2019 SB2019091307
SB2019092703
SB2019100116
and 33 more
#VU17779 - Improper input validation
CVE-2018-19361
CWE-20 High
No
No
- 19.02.2019 SB2018121501
SB2019052407
SB2019091718
and 23 more
#VU17053 - Permissions, Privileges, and Access Controls
CVE-2018-14718
CWE-264 High
No
No
- 17.01.2019 SB2019011703
SB2019052407
SB2019091718
and 29 more
#VU11301 - Improper Access Control
CVE-2018-8088
CWE-284 Low
No
No
- 28.03.2018 SB2018022112
SB2018032813
SB2018032817
and 27 more
#VU11285 - Data Handling
CVE-2017-12624
CWE-19 Low
No
No
- 27.03.2018 SB2017111431
SB2018072004
SB2018110715
and 5 more
#VU10257 - Deserialization of Untrusted Data
CVE-2017-17485
CWE-502 High
No
No
- 26.01.2018 SB2017121218
SB2018021605
SB2018051725
and 23 more


Showing elements 61 - 80 out of 127