Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Event Streams
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-29792 1 Ibm 1 Event Streams 2024-11-21 6.5 MEDIUM 7.2 HIGH
IBM Event Streams 10.0, 10.1, 10.2, and 10.3 could allow a user the CA private key to create their own certificates and deploy them in the cluster and gain privileges of another user. IBM X-Force ID: 203450.
CVE-2020-4662 1 Ibm 1 Event Streams 2024-11-21 6.5 MEDIUM 8.8 HIGH
IBM Event Streams 10.0.0 could allow an authenticated user to perform tasks to a schema due to improper authentication validation. IBM X-Force ID: 186233.
CVE-2018-1833 1 Ibm 1 Event Streams 2024-11-21 3.5 LOW 5.3 MEDIUM
IBM Event Streams 2018.3.0 could allow a remote attacker to submit an API request with a fake Host request header. An attacker, who has already gained authorised access via the CLI, could exploit this vulnerability to spoof the request header. IBM X-Force ID: 150507.