CVE-2023-28958

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jul 10, 2023
Updated: Jul 13, 2023
CWE ID 1236

Summary

CVE-2023-28958: IBM Watson Knowledge Catalog in Cloud Pak for Data 4.0 is susceptible to CSV Injection vulnerabilities. Malicious CSV files can bypass proper validation, enabling remote attackers to execute arbitrary system commands. This issue, identified as IBM X-Force ID: 251782, may result in significant security risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share