Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

DataPower Gateway — Vulnerabilities & Security Advisories 25

All 25 CVE vulnerabilities found in DataPower Gateway, with AI-generated Chinese analysis, references, and POCs.

This page presents vulnerability data for the DataPower Gateway, focusing on various weakness types associated with this enterprise security appliance. It aggregates security findings from multiple authoritative sources to provide a comprehensive view of the product's risk landscape. The collection includes a wide range of vulnerability categories such as injection flaws, cross-site scripting, and improper access control issues that may affect the gateway's configuration or underlying operating system. The data covers security events reported over the past several years, ensuring that both historical and recent threats are accessible for analysis. By consolidating this information, the page allows users to track vendor advisories from IBM and other relevant security providers as they are released. Visitors can use this resource to understand the prevalence and impact of specific weakness classes within the DataPower Gateway environment. Furthermore, the aggregated data supports the lookup of a product's vulnerability history, enabling administrators and security analysts to assess past exposures and verify the remediation status of identified issues. This holistic approach aids in risk management by providing context on how frequently certain vulnerabilities have been discovered and patched. The information is structured to facilitate efficient searching and cross-referencing, helping teams prioritize security updates based on the specific version of the gateway in use. Ultimately, this resource serves as a central repository for understanding the security posture of DataPower Gateway through detailed vulnerability records.

Vendor: IBM

CVE IDTitleCVSSSeverityPublished
CVE-2022-40228 IBM DataPower Gateway session fixation CWE-613 3.7 Low2022-11-22
CVE-2022-31773 IBM DataPower Gateway 跨站请求伪造漏洞 8.8 -2022-08-26
CVE-2022-32750 IBM DataPower Gateway 跨站脚本漏洞 5.4 -2022-07-31
CVE-2022-31776 IBM DataPower Gateway 代码问题漏洞 7.6 -2022-07-31
CVE-2022-31775 IBM DataPower Gateway 代码问题漏洞 8.2 -2022-07-31
CVE-2022-31774 IBM DataPower Gateway 跨站脚本漏洞 5.4 -2022-07-31
CVE-2022-22326 IBM MQ Appliance 安全漏洞 4.0 -2022-07-31
CVE-2021-38944 IBM DataPower Gateway 跨站脚本漏洞 5.4 -2022-05-18
CVE-2021-38872 IBM DataPower Gateway 资源管理错误漏洞 7.5 -2022-05-17
CVE-2020-4994 IBM DataPower Gateway 安全漏洞 7.5 -2022-05-17
CVE-2021-38910 IBM DataPower Gateway 输入验证错误漏洞 5.3 -2022-03-10
CVE-2020-4992 IBM DataPower Gateway 跨站请求伪造漏洞 8.8 -2021-08-17
CVE-2020-5008 IBM DataPower Gateway 安全漏洞 5.3 -2021-06-07
CVE-2020-4831 IBM DataPower Gateway 加密问题漏洞 7.5 -2021-03-12
CVE-2020-5014 IBM DataPower Gateway 代码问题漏洞 6.7 -2021-03-08
CVE-2020-4528 ibm mq 和 ibm datapower gateway 信息泄露漏洞 5.5 -2020-10-06
CVE-2020-4581 IBM DataPower Gateway 安全漏洞 7.5 -2020-09-21
CVE-2020-4580 IBM DataPower Gateway 安全漏洞 7.5 -2020-09-21
CVE-2020-4579 IBM DataPower Gateway 安全漏洞 7.5 -2020-09-21
CVE-2020-4205 IBM DataPower Gateway 授权问题漏洞 7.6 -2020-03-19
CVE-2020-4203 IBM DataPower Gateway 信息泄露漏洞 4.9 -2020-03-19
CVE-2019-4621 IBM DataPower Gateway 安全漏洞 9.8 -2019-12-09
CVE-2018-1666 IBM DataPower Gateway 注入漏洞 4.3 -2019-02-07
CVE-2018-1668 IBM DataPower Gateway 授权问题漏洞 5.3 -2019-01-29
CVE-2018-1665 IBM DataPower Gateways 安全漏洞 7.5 -2018-12-13

All 25 known CVE vulnerabilities affecting DataPower Gateway with full Chinese analysis, references, and POCs where available.