Page 2 of 6 results (0.002 seconds)

CVSS: 10.0EPSS: 39%CPEs: 3EXPL: 0

IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a specially crafted HTTP command, an attacker could exploit this vulnerability to execute arbitrary command on the system. IBM X-Force ID: 175020. IBM Spectrum Protect Plus versiones 10.1.0 y 10.1.5, podría permitir a un atacante remoto ejecutar código arbitrario sobre el sistema. Mediante el uso de un comando HTTP especialmente diseñado, un atacante podría explotar esta vulnerabilidad para ejecutar un comando arbitrario sobre el sistema. • https://exchange.xforce.ibmcloud.com/vulnerabilities/175020 https://www.ibm.com/support/pages/node/3178863 https://www.zerodayinitiative.com/advisories/ZDI-20-274 • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •