Required CVE Record Information
Description
IBM Cloud Pak for Security 1.3.0.1(CP4S) potentially vulnerable to CVS Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 185367.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
6.5 | MEDIUM | 3.0 | CVSS:3.0/UI:R/A:L/PR:L/I:L/AC:L/C:L/AV:N/S:C/RC:C/RL:O/E:U |
References 2 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- https://www.ibm.com/support/pages/node/6372538 x_transferred
- exchange.xforce.ibmcloud.com: ibm-cp4s-cve20204627-code-exec (185367) vdb-entryx_transferred