Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-4521

Опубликовано: 10 дек. 2019
Источник: nvd
CVSS3: 7
CVSS3: 9.8
CVSS2: 10
EPSS Низкий

Описание

Platform System Manager in IBM Cloud Pak System 2.3 is potentially vulnerable to CVS Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 165179.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ibm:cloud_pak_system:2.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.0.1:*:*:*:*:*:*:*

EPSS

Процентиль: 77%
0.0104
Низкий

7 High

CVSS3

9.8 Critical

CVSS3

10 Critical

CVSS2

Дефекты

CWE-1236

Связанные уязвимости

github
больше 3 лет назад

Platform System Manager in IBM Cloud Pak System 2.3 is potentially vulnerable to CVS Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 165179.

EPSS

Процентиль: 77%
0.0104
Низкий

7 High

CVSS3

9.8 Critical

CVSS3

10 Critical

CVSS2

Дефекты

CWE-1236