Vulnerabilities > IBM > Integration BUS > 10.1.0.2

DATE CVE VULNERABILITY TITLE RISK
2024-03-26 CVE-2024-22356 Improper Encoding or Escaping of Output vulnerability in IBM APP Connect Enterprise and Integration BUS
IBM App Connect Enterprise 11.0.0.1 through 11.0.0.23, 12.0.1.0 through 12.0.9.0 and IBM Integration Bus for z/OS 10.1 through 10.1.0.2store potentially sensitive information in log or trace files that could be read by a privileged user.
network
low complexity
ibm CWE-116
4.9
2024-03-14 CVE-2024-27265 Unspecified vulnerability in IBM Integration BUS 10.1/10.1.0.2/10.1.0.3
IBM Integration Bus for z/OS 10.1 through 10.1.0.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
network
low complexity
ibm
6.5
2024-02-09 CVE-2024-22332 Unspecified vulnerability in IBM Integration BUS 10.1/10.1.0.2
The IBM Integration Bus for z/OS 10.1 through 10.1.0.2 AdminAPI is vulnerable to a denial of service due to file system exhaustion.
network
low complexity
ibm
6.5