10
CVSSv2

CVE-2021-39065

Published: 13/12/2021 Updated: 12/07/2022
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

IBM Spectrum Copy Data Management 2.2.13 and previous versions could allow a remote malicious user to execute arbitrary commands on the system, caused by improper validation of user-supplied input by the Spectrum Copy Data Management Admin Console login and uploadcertificate function . A remote attacker could inject arbitrary shell commands which would be executed on the affected system. IBM X-Force ID: 214958.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm spectrum_copy_data_management