Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Observability With Instana
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-37404 1 Ibm 1 Observability With Instana 2024-02-28 N/A 9.8 CRITICAL
IBM Observability with Instana 1.0.243 through 1.0.254 could allow an attacker on the network to execute arbitrary code on the host after a successful DNS poisoning attack. IBM X-Force ID: 259789.
CVE-2023-27290 1 Ibm 1 Observability With Instana 2024-02-28 N/A 9.1 CRITICAL
Docker based datastores for IBM Instana (IBM Observability with Instana 239-0 through 239-2, 241-0 through 241-2, and 243-0) do not currently require authentication. Due to this, an attacker within the network could access the datastores with read/write access. IBM X-Force ID: 248737.