Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-22320


IBM Operational Decision Manager 8.10.3 could allow a remote authenticated attacker to execute arbitrary code on the system, caused by an unsafe deserialization. By sending specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code in the context of SYSTEM. IBM X-Force ID: 279146.


Published

2024-02-02T03:15:10.780

Last Modified

2024-11-21T08:56:03.473

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-502

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm operational_decision_manager 8.10.3 Yes
Application ibm operational_decision_manager 8.10.4 Yes
Application ibm operational_decision_manager 8.10.5.1 Yes
Application ibm operational_decision_manager 8.11 Yes
Application ibm operational_decision_manager 8.11.0.1 Yes
Application ibm operational_decision_manager 8.12.0.1 Yes

References