IBM Engineering Lifecycle Optimization Publishing 7.0.2 and 7.03 could allow a remote attacker to upload arbitrary files, caused by the improper validation of file extensions. By sending a specially crafted request, a remote attacker could exploit this vulnerability to upload a malicious file, which could allow the attacker to execute arbitrary code on the vulnerable system. IBM X-Force ID: 268751.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2024-06-09T12:15:17.786Z
Updated: 2024-08-02T20:14:19.731Z
Reserved: 2023-10-05T01:39:10.397Z
Link: CVE-2023-45188
Vulnrichment
Updated: 2024-08-02T20:14:19.731Z
NVD
Status : Awaiting Analysis
Published: 2024-06-09T13:15:49.537
Modified: 2024-11-21T08:26:30.613
Link: CVE-2023-45188
Redhat
No data.