ZeroHour

CVE-2024-35154

CVSS 3.1
7.2 high
EPSS
1%p65
Published
()
Modified
Description

IBM WebSphere Application Server 8.5 and 9.0 could allow a remote authenticated attacker, who has authorized access to the administrative console, to execute arbitrary code. Using specially crafted input, the attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 292641.

Vendors
ibm
Products
websphere application server
Weakness
CWE-250
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.