IBM Cloud Pak System是美国IBM公司的一套具有可配置、预集成软件的全栈、融合基础架构。该产品支持跨混合云部署、管理和移动应用程序环境。 IBM Cloud Pak System 2.3版本至2.3.0.1版本中的Platform System Manager存在CVS注入漏洞,该漏洞源于程序没有正确验证csv文件内容。远程攻击者可利用该漏洞在系统上执行任意命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Cloud Pak System | 2.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-4663 | IBM WebSphere Application Server Liberty 跨站脚本漏洞 | |
| CVE-2019-4244 | IBM SmartCloud Analytics 访问控制错误漏洞 | |
| CVE-2019-4095 | IBM Cloud Pak System 跨站请求伪造漏洞 |
No comments yet