Vulnerabilities > IBM > Event Streams

DATE CVE VULNERABILITY TITLE RISK
2021-07-12 CVE-2021-29792 Improper Privilege Management vulnerability in IBM Event Streams
IBM Event Streams 10.0, 10.1, 10.2, and 10.3 could allow a user the CA private key to create their own certificates and deploy them in the cluster and gain privileges of another user.
network
low complexity
ibm CWE-269
6.5
2020-08-14 CVE-2020-4662 Improper Authentication vulnerability in IBM Event Streams 10.0.0
IBM Event Streams 10.0.0 could allow an authenticated user to perform tasks to a schema due to improper authentication validation.
network
low complexity
ibm CWE-287
6.5
2018-12-18 CVE-2018-1833 Unspecified vulnerability in IBM Event Streams 2018.3.0
IBM Event Streams 2018.3.0 could allow a remote attacker to submit an API request with a fake Host request header.
network
ibm
3.5