Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hphw-v67p-v2g2

Опубликовано: 22 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

IBM webMethods Integration 10.15 and 11.1 could allow an authenticated user with required execute Services to execute commands on the system due to the improper validation of format string strings passed as an argument from an external source.

IBM webMethods Integration 10.15 and 11.1 could allow an authenticated user with required execute Services to execute commands on the system due to the improper validation of format string strings passed as an argument from an external source.

EPSS

Процентиль: 27%
0.00339
Низкий

7.5 High

CVSS3

Дефекты

CWE-134

Связанные уязвимости

CVSS3: 7.5
nvd
11 месяцев назад

IBM webMethods Integration 10.15 and 11.1 could allow an authenticated user with required execute Services to execute commands on the system due to the improper validation of format string strings passed as an argument from an external source.

CVSS3: 7.5
fstec
12 месяцев назад

Уязвимость сервиса pub.xslt.Transformations:transformSerialXML платформы для интеграции бизнес-процессов IBM WebMethods Integration, позволяющая нарушителю выполнить произвольные команды

EPSS

Процентиль: 27%
0.00339
Низкий

7.5 High

CVSS3

Дефекты

CWE-134