Security Advisory

CVE-2023-28958

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-07-10 01:06:17
Last updated 2024-11-12 14:21:53
Assigner ibm
CVSS score 7.0
State PUBLISHED

Description

IBM Watson Knowledge Catalog on Cloud Pak for Data 4.0 is potentially vulnerable to CSV Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 251782.