Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jfcv-g6r7-w56q

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM i2 Analyst Notebook 9.2.1 and 9.2.2 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 183318.

IBM i2 Analyst Notebook 9.2.1 and 9.2.2 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 183318.

EPSS

Процентиль: 21%
0.0007
Низкий

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 7.8
nvd
больше 5 лет назад

IBM i2 Analyst Notebook 9.2.1 and 9.2.2 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 183318.

CVSS3: 7.8
fstec
больше 5 лет назад

Уязвимость инструмента визуального анализа IBM i2 Analyst's Notebook, вызванная переполнением буфера в динамической памяти, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 21%
0.0007
Низкий

Дефекты

CWE-119