Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hphw-v67p-v2g2

Опубликовано: 22 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

IBM webMethods Integration 10.15 and 11.1 could allow an authenticated user with required execute Services to execute commands on the system due to the improper validation of format string strings passed as an argument from an external source.

IBM webMethods Integration 10.15 and 11.1 could allow an authenticated user with required execute Services to execute commands on the system due to the improper validation of format string strings passed as an argument from an external source.

EPSS

Процентиль: 23%
0.00078
Низкий

7.5 High

CVSS3

Дефекты

CWE-134

Связанные уязвимости

CVSS3: 7.5
nvd
5 месяцев назад

IBM webMethods Integration 10.15 and 11.1 could allow an authenticated user with required execute Services to execute commands on the system due to the improper validation of format string strings passed as an argument from an external source.

CVSS3: 7.5
fstec
5 месяцев назад

Уязвимость сервиса pub.xslt.Transformations:transformSerialXML платформы для интеграции бизнес-процессов IBM WebMethods Integration, позволяющая нарушителю выполнить произвольные команды

EPSS

Процентиль: 23%
0.00078
Низкий

7.5 High

CVSS3

Дефекты

CWE-134