Vulnerabilities > IBM > Integration BUS > 10.1.0.2
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-03-26 | CVE-2024-22356 | Improper Encoding or Escaping of Output vulnerability in IBM APP Connect Enterprise and Integration BUS IBM App Connect Enterprise 11.0.0.1 through 11.0.0.23, 12.0.1.0 through 12.0.9.0 and IBM Integration Bus for z/OS 10.1 through 10.1.0.2store potentially sensitive information in log or trace files that could be read by a privileged user. | 4.9 |
2024-03-14 | CVE-2024-27265 | Unspecified vulnerability in IBM Integration BUS 10.1/10.1.0.2/10.1.0.3 IBM Integration Bus for z/OS 10.1 through 10.1.0.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. | 6.5 |
2024-02-09 | CVE-2024-22332 | Unspecified vulnerability in IBM Integration BUS 10.1/10.1.0.2 The IBM Integration Bus for z/OS 10.1 through 10.1.0.2 AdminAPI is vulnerable to a denial of service due to file system exhaustion. | 6.5 |