Vulnerabilities > IBM > Cloud PAK FOR Applications > High

DATE CVE VULNERABILITY TITLE RISK
2021-07-13 CVE-2021-20360 Inadequate Encryption Strength vulnerability in IBM Cloud PAK for Applications 4.3
IBM Cloud Pak for Applications 4.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
low complexity
ibm CWE-326
7.5
2021-07-13 CVE-2021-20422 Unspecified vulnerability in IBM Cloud PAK for Applications
IBM Cloud Pak for Applications 4.3 could disclose sensitive information to a malicious attacker by accessing data stored in memory.
network
low complexity
ibm
7.5
2021-07-13 CVE-2021-20423 Incorrect Permission Assignment for Critical Resource vulnerability in IBM Cloud PAK for Applications
IBM Cloud Pak for Applications 4.3 could allow an authenticated user gain escalated privilesges due to improper application permissions.
network
low complexity
ibm CWE-732
8.8