Описание
IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 could allow a remote authenticated attacker to execute arbitrary commands on the system. IBM X-Force ID: 180533.
IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 could allow a remote authenticated attacker to execute arbitrary commands on the system. IBM X-Force ID: 180533.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2020-4428
- https://exchange.xforce.ibmcloud.com/vulnerabilities/180533
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-4428
- https://www.ibm.com/support/pages/node/6206875
- http://seclists.org/fulldisclosure/2024/Nov/0
- http://seclists.org/fulldisclosure/2024/Nov/1
Связанные уязвимости
CVSS3: 9.1
nvd
почти 6 лет назад
IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, and 2.0.4 could allow a remote authenticated attacker to execute arbitrary commands on the system. IBM X-Force ID: 180533.
CVSS3: 9.1
fstec
почти 6 лет назад
Уязвимость приложения для выявления, анализа и визуализация бизнес-рисков IBM Data Risk Manager, связанная с непринятием мер по нейтрализации специальных элементов, позволяющая нарушителю выполнить произвольные команды