Vulnerabilities > IBM > Observability With Instana > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-10-04 CVE-2023-37404 Unspecified vulnerability in IBM Observability With Instana 1.0.243/1.0.254
IBM Observability with Instana 1.0.243 through 1.0.254 could allow an attacker on the network to execute arbitrary code on the host after a successful DNS poisoning attack.
network
low complexity
ibm
critical
9.8
2023-03-03 CVE-2023-27290 Missing Authentication for Critical Function vulnerability in IBM Observability With Instana
Docker based datastores for IBM Instana (IBM Observability with Instana 239-0 through 239-2, 241-0 through 241-2, and 243-0) do not currently require authentication.
network
low complexity
ibm CWE-306
critical
9.1