Ibm Db2 On Cloud Pak For Data vulnerabilities
2 known vulnerabilities affecting ibm/db2_on_cloud_pak_for_data.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2023-42005HIGHCVSS 8.8v3.5, 4.0, 4.5, 4.6, 4.7, 4.82024-05-29
CVE-2023-42005 [HIGH] CWE-264 CVE-2023-42005: IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data 3.5, 4.0, 4.5, 4.6, 4.7, and 4
IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data 3.5, 4.0, 4.5, 4.6, 4.7, and 4.8 could allow a user with access to the Kubernetes pod, to make system calls compromising the security of containers. IBM X-Force ID: 265264.
cvelistv5nvd
CVE-2022-41297MEDIUMCVSS 6.5≥ 3.5, < 4.62022-12-01
CVE-2022-41297 [MEDIUM] CWE-352 CVE-2022-41297: IBM Db2U 3.5, 4.0, and 4.5 is vulnerable to cross-site request forgery which could allow an attacker
IBM Db2U 3.5, 4.0, and 4.5 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 237212.
nvd