IBM WebSphere Automation 1.7.0 could allow an attacker with privileged access to the network to conduct a CSV injection. An attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 285623.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2024-05-01T16:35:38.108Z
Updated: 2024-06-04T18:03:11.147Z
Reserved: 2024-03-10T12:22:43.138Z
Link: CVE-2024-28764
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-05-01T17:15:31.083
Modified: 2024-05-01T19:50:25.633
Link: CVE-2024-28764
JSON object: View
Redhat Information
No data.
CWE