Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

Cloud Pak System — Vulnerabilities & Security Advisories 35

All 35 CVE vulnerabilities found in Cloud Pak System, with AI-generated Chinese analysis, references, and POCs.

This page is a vulnerability aggregation resource for the IBM Cloud Pak System product, specifically focusing on known software weaknesses and security flaws. It collects a comprehensive list of identified vulnerabilities affecting the Cloud Pak System infrastructure, application environments, and underlying management software. The data spans from early adoption phases through recent releases, covering historical security patches, critical flaws, and moderate risk issues reported over the past several years. Here, you can track vendor advisories to stay informed about the latest security updates and mitigation strategies provided by IBM. You can also understand the nature of specific weakness classes by examining detailed descriptions and impact assessments associated with each finding. Additionally, the page allows you to look up a product's vulnerability history to analyze trends, assess cumulative risk, and verify if specific patches have been applied to your environment. This centralized view supports security teams in maintaining compliance, prioritizing remediation efforts, and evaluating the overall security posture of their deployed systems without requiring extensive manual research across multiple disparate sources. The information is structured to facilitate quick identification of relevant threats and provide context for decision-making regarding system hardening and upgrade schedules.

Vendor: IBM

CVE IDTitleCVSSSeverityPublished
CVE-2023-38005 Improper Access Control and Exposure of Information Through Directory Listing vulnerabilities affect IBM Cloud Pak System[, ] CWE-284 4.3 Medium2026-02-17
CVE-2023-38265 Improper Access Control and Exposure of Information Through Directory Listing vulnerabilities affect IBM Cloud Pak System[, ] CWE-548 5.3 Medium2026-02-17
CVE-2023-38281 Multiple Vulnerabilities in IBM Cloud Pak System CWE-209 5.3 Medium2026-02-04
CVE-2023-38017 Multiple Vulnerabilities in IBM Cloud Pak System CWE-209 5.3 Medium2026-02-04
CVE-2023-38010 Multiple Vulnerabilities in IBM Cloud Pak System CWE-209 5.3 Medium2026-02-04
CVE-2025-2895 IBM Cloud Pak System HTML injection CWE-80 5.4 Medium2025-06-30
CVE-2023-38007 IBM Cloud Pak System HTML injection CWE-80 5.4 Medium2025-06-27
CVE-2023-38272 IBM Cloud Pak System information disclosure CWE-300 5.9 Medium2025-03-27
CVE-2023-37405 IBM Cloud Pak System information disclosure CWE-311 6.5 Medium2025-03-27
CVE-2023-38271 IBM Cloud Pak System information disclosure CWE-532 4.3 Medium2025-01-25
CVE-2023-38713 IBM Cloud Pak System information disclosure CWE-209 5.3 Medium2025-01-25
CVE-2023-38714 IBM Cloud Pak System information disclosure CWE-209 5.3 Medium2025-01-25
CVE-2023-38013 IBM Cloud Pak System information disclosure CWE-201 5.3 Medium2025-01-25
CVE-2023-38012 IBM Cloud Pak System directory traversal CWE-22 5.3 Medium2025-01-25
CVE-2023-38716 IBM Cloud Pak System information disclosure CWE-209 5.3 Medium2025-01-25
CVE-2023-38273 IBM Cloud Pak System information disclosure CWE-307 7.5 High2024-02-02
CVE-2021-20479 IBM Cloud Pak System 加密问题漏洞 7.5 -2022-05-09
CVE-2021-20478 IBM Cloud Pak System 信息泄露漏洞 5.5 -2021-07-20
CVE-2020-4928 IBM Cloud Pak System 代码问题漏洞 6.7 -2021-01-04
CVE-2020-4919 IBM Cloud Pak System 安全漏洞 6.5 -2021-01-04
CVE-2020-4918 IBM Cloud Pak System 代码问题漏洞 4.4 -2021-01-04
CVE-2020-4917 IBM Cloud Pak System 跨站请求伪造漏洞 8.8 -2021-01-04
CVE-2020-4916 IBM Cloud Pak System 跨站脚本漏洞 4.8 -2021-01-04
CVE-2020-4913 IBM Cloud Pak System 信息泄露漏洞 4.4 -2021-01-04
CVE-2020-4912 IBM Cloud Pak System 安全漏洞 7.2 -2021-01-04
CVE-2020-4910 IBM Cloud Pak System 跨站脚本漏洞 4.8 -2021-01-04
CVE-2020-4909 IBM Cloud Pak System 跨站脚本漏洞 4.8 -2021-01-04
CVE-2019-4521 IBM Cloud Pak System Platform System Manager 注入漏洞 9.8 -2019-12-10
CVE-2019-4095 IBM Cloud Pak System 跨站请求伪造漏洞 8.8 -2019-12-10
CVE-2019-4468 IBM Cloud Pak System Platform System Manager 跨站脚本漏洞 4.8 -2019-12-03

All 35 known CVE vulnerabilities affecting Cloud Pak System with full Chinese analysis, references, and POCs where available.