IBM webMethods Integration (on prem) 10.15, 10.11 could allow an unauthenticated remote attacker to execute arbitrary code on the system due to the deserialization of untrusted data.
Score CVSS v3.1
9.8
/ 10.0
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Informations
- Publié
- 30 juil. 2026
- Mis à jour
- 30 juil. 2026
- Statut
- Awaiting Analysis
- Source
- psirt@us.ibm.com
Faiblesses (CWE)
CWE-502
Références (1)
CVEs similaires
Autres vulnérabilités de type CWE-502
Loading…
Surveillez vos produits
Recevez une alerte automatique à chaque nouvelle CVE affectant vos équipements.