CVE-2023-28958
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Jul 10, 2023
Updated: Jul 13, 2023
CWE ID 1236
Summary
CVE-2023-28958: IBM Watson Knowledge Catalog in Cloud Pak for Data 4.0 is susceptible to CSV Injection vulnerabilities. Malicious CSV files can bypass proper validation, enabling remote attackers to execute arbitrary system commands. This issue, identified as IBM X-Force ID: 251782, may result in significant security risks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- IBM Corporation