Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2024-16921
HistoryMar 26, 2024 - 12:00 a.m.

IBM Cloud Pak for Automation CSV Injection Vulnerability

2024-03-2600:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
ibm
cloud pak
automation
csv
injection
vulnerability
intelligent software platform
international business machines
pre-integrated
low-code tools
cloud environments
validation
exploited
attacker
arbitrary commands

AI Score

7.6

Confidence

High

EPSS

0

Percentile

9.0%

IBM Cloud Pak for Automation is an intelligent software platform for building automation applications in cloud environments from International Business Machines (IBM). The platform uses pre-integrated automation technologies and low-code tools to design, build and run automation applications and services on any cloud. A CSV injection vulnerability exists in IBM Cloud Pak for Automation that stems from not properly validating the contents of a CSV file, which could be exploited by an attacker to execute arbitrary commands on a system.

AI Score

7.6

Confidence

High

EPSS

0

Percentile

9.0%

Related for CNVD-2024-16921