Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Webmethods_integration
(Ibm)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 3 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-09-04 | CVE-2024-45074 | IBM webMethods Integration 10.15 could allow an authenticated user to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. | Webmethods_integration | 6.5 | ||
2024-09-04 | CVE-2024-45075 | IBM webMethods Integration 10.15 could allow an authenticated user to create scheduler tasks that would allow them to escalate their privileges to administrator due to missing authentication. | Webmethods_integration | 8.8 | ||
2024-09-04 | CVE-2024-45076 | IBM webMethods Integration 10.15 could allow an authenticated user to upload and execute arbitrary files which could be executed on the underlying operating system. | Webmethods_integration | 9.9 |