IBM WebSphere Automation 1.7.0 could allow an attacker with privileged access to the network to conduct a CSV injection. An attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 285623.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2024-05-01T16:35:38.108Z
Updated: 2024-08-02T00:56:58.145Z
Reserved: 2024-03-10T12:22:43.138Z
Link: CVE-2024-28764
Vulnrichment
Updated: 2024-05-01T18:40:35.342Z
NVD
Status : Awaiting Analysis
Published: 2024-05-01T17:15:31.083
Modified: 2024-05-01T19:50:25.633
Link: CVE-2024-28764
Redhat
No data.