Vulnerabilities > IBM > Websphere Application Server > 24.0.0.3

DATE CVE VULNERABILITY TITLE RISK
2024-08-14 CVE-2023-50314 Unspecified vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server Liberty 17.0.0.3 through 24.0.0.8 could allow an attacker with access to the network to conduct spoofing attacks.
network
low complexity
ibm
7.5
2024-04-17 CVE-2024-22354 Unspecified vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server 8.5, 9.0 and IBM WebSphere Application Server Liberty 17.0.0.3 through 24.0.0.5 are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data.
network
high complexity
ibm
7.0
2024-04-04 CVE-2024-27268 Allocation of Resources Without Limits or Throttling vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server Liberty 18.0.0.2 through 24.0.0.4 is vulnerable to a denial of service, caused by sending a specially crafted request.
network
low complexity
ibm CWE-770
7.5
2024-03-31 CVE-2024-22353 Unspecified vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server Liberty 17.0.0.3 through 24.0.0.4 is vulnerable to a denial of service, caused by sending a specially crafted request.
network
low complexity
ibm
7.5
2024-03-27 CVE-2024-27270 Unspecified vulnerability in IBM Websphere Application Server 24.0.0.3
IBM WebSphere Application Server Liberty 23.0.0.3 through 24.0.0.3 is vulnerable to cross-site scripting.
network
low complexity
ibm
6.1