IBM webMethods Integration 10.15 could allow an authenticated user to upload and execute arbitrary files which could be executed on the underlying operating system.
History

Fri, 06 Sep 2024 17:00:00 +0000

Type Values Removed Values Added
First Time appeared Ibm
Ibm webmethods Integration
CPEs cpe:2.3:a:ibm:webmethods_integration:10.15:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm webmethods Integration

Wed, 04 Sep 2024 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 04 Sep 2024 16:15:00 +0000

Type Values Removed Values Added
Description IBM webMethods Integration 10.15 could allow an authenticated user to upload and execute arbitrary files which could be executed on the underlying operating system.
Title IBM webMethods Integration code execution
First Time appeared Softwareag
Softwareag webmethods
Weaknesses CWE-434
CPEs cpe:2.3:a:softwareag:webmethods:10.15:*:*:*:*:*:*:*
Vendors & Products Softwareag
Softwareag webmethods
References
Metrics cvssV3_1

{'score': 9.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2024-09-04T15:59:07.939Z

Updated: 2024-09-04T18:29:57.834Z

Reserved: 2024-08-21T19:10:49.905Z

Link: CVE-2024-45076

cve-icon Vulnrichment

Updated: 2024-09-04T18:29:52.887Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-04T16:15:08.600

Modified: 2024-09-06T16:44:52.310

Link: CVE-2024-45076

cve-icon Redhat

No data.