Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-83660
HistoryOct 26, 2023 - 12:00 a.m.

IBM Security Verify Governance Command Execution Vulnerability

2023-10-2600:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
ibm security verify governance
command execution
vulnerability
intelligent identity access platform
analyze
define
control
user access
access risk
specially crafted requests
remote attacker
arbitrary commands
system

AI Score

7.9

Confidence

High

EPSS

0.001

Percentile

28.9%

IBM Security Verify Governance is an intelligent identity access platform from International Business Machines (IBM), Inc. provides organizations with a platform to analyze, define and control user access and access risk. IBM Security verify Governance suffers from a command execution vulnerability that stems from the application’s failure to properly filter construct command special characters, commands, and more. An authenticated, remote attacker could exploit the vulnerability to execute arbitrary commands on the system by sending specially crafted requests.

AI Score

7.9

Confidence

High

EPSS

0.001

Percentile

28.9%

Related for CNVD-2023-83660