VendorsIBMapp_connect_enterprise_certified_containerall versions
Vulnerabilities

IBM App Connect Enterprise Certified Container

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-2022-43916
IBM App Connect Enterprise Certified Container improper communications restriction
Published 2025-01-30 · Analyzed
9.1EPSS 0.003
CVE-2024-51465
IBM App Connect Enterprise Certified Container command execution
Published 2024-12-04 · Analyzed
8.8EPSS 0.007
CVE-2022-43915
IBM App Connect Enterprise Certified Container
Published 2024-08-24 · Modified
8.1EPSS 0.004
CVE-2022-42439
IBM App Connect Enterprise information disclosure
Published 2023-02-06 · Modified
6.8EPSS 0.007
CVE-2022-22404
IBM App Connect Enterprise Certified Container Dashboard UI (IBM App Connect Enterprise Certified Container 1.5, 2.0, 2.1, 3.0, and 3.1) may be vulnerable to denial of service due to excessive rate limiting.
Published 2022-04-01 · Modified
6.5EPSS 0.010
CVE-2022-43922
IBM App Connect Enterprise Certified Container information disclosure
Published 2023-02-01 · Modified
6.5EPSS 0.004
CVE-2022-43874
IBM App Connect Enterprise Certified Container
Published 2023-03-15 · Modified
6.1EPSS 0.004
CVE-2021-29906
IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, 1.3, 1.4 and 1.5 could disclose sensitive information to a local user when it is configured to use an IBM Cloud API key to connect to cloud-based connectors. IBM X-Force ID: 207630.
Published 2021-10-08 · Modified
5.5EPSS 0.002
CVE-2022-22491
IBM App Connect Enterprise Certified Container denial of service
Published 2025-01-09 · Analyzed
5.5EPSS 0.002
CVE-2020-4785
IBM App Connect Enterprise Certified Container 1.0.0, 1.0.1, 1.0.2, 1.0.3, and 1.0.4 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 189219.
Published 2020-11-03 · Modified
5.4EPSS 0.007
CVE-2022-31770
IBM App Connect Enterprise Certified Container 4.2 could allow a user from the administration console to cause a denial of service by creating a specially crafted request. IBM X-Force ID: 228221.
Published 2022-07-05 · Modified
4.9EPSS 0.009
CVE-2021-29759
IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, and 1.3 could allow a privileged user to obtain sensitive information from internal log files. IBM X-Force ID: 202212.
Published 2021-07-07 · Modified
4.4EPSS 0.003