IBM Operations Analytics-Log Analysis是美国国际商业机器(IBM)公司的一套半结构化数据分析解决方案。该产品主要用于应用程序日志分析和问题诊断等。 IBM Operations Analytics-Log Analysis 存在安全漏洞,该漏洞源于HTTP标头注入,可能导致跨站脚本或会话劫持。以下版本受到影响:1.3.7.0、1.3.7.1、1.3.7.2、1.3.8.0、1.3.8.1和1.3.8.2版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | SmartCloud Analytics Log Analysis | 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, 1.3.8.2 |
cpe:2.3:a:ibm:smartcloud_analytics_log_analysis:1.3.7.0:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-33076 | 8.8 HIGH | IBM Engineering Systems Design Rhapsody code execution |
| CVE-2025-33077 | 8.8 HIGH | IBM Engineering Systems Design Rhapsody code execution |
| CVE-2025-36116 | 6.3 MEDIUM | IBM Db2 Mirror for i cross-site websocket hijacking |
| CVE-2025-36117 | 6.3 MEDIUM | IBM Db2 Mirror for i session fixation |
| CVE-2024-40682 | 6.2 MEDIUM | IBM SmartCloud Analytics - Log Analysis denial of service |
| CVE-2025-33020 | 5.9 MEDIUM | IBM Engineering Systems Design Rhapsody information disclosure |
| CVE-2024-41751 | 5.5 MEDIUM | IBM SmartCloud Analytics - Log Analysis security bypass |
| CVE-2024-41750 | 5.5 MEDIUM | IBM SmartCloud Analytics - Log Analysis security bypass |
No comments yet