First published: Wed Apr 26 2023(Updated: )
IBM Cloud Pak for Data 4.5 and 4.6 could allow a privileged user to upload malicious files of dangerous types that can be automatically processed within the product's environment. IBM X-Force ID: 232034.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cloud Pak for Data | =4.5 | |
IBM Cloud Pak for Data | =4.6 | |
Redhat Openshift |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-36769.
The severity of CVE-2022-36769 is high with a CVSS score of 7.2.
Versions 4.5 and 4.6 of IBM Cloud Pak for Data are affected by CVE-2022-36769.
CVE-2022-36769 allows a privileged user to upload malicious files of dangerous types that can be automatically processed within the product's environment.
You can learn more about CVE-2022-36769 by visiting the IBM X-Force ID page at <a href='https://exchange.xforce.ibmcloud.com/vulnerabilities/232034'>https://exchange.xforce.ibmcloud.com/vulnerabilities/232034</a>.