First published: Fri Oct 28 2022(Updated: )
IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.2.0 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 233786.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cloud Pak for Security | >=1.10.0.0<=1.10.2.0 | |
Linux Linux kernel | ||
IBM Cloud Pak for Security (CP4S) | <=1.10.0.0 - 1.10.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-38387 is high with a score of 8.8.
A remote authenticated attacker can exploit CVE-2022-38387 by sending a specially crafted request to execute arbitrary commands on the system.
Versions 1.10.0.0 through 1.10.2.0 of IBM Cloud Pak for Security (CP4S) are vulnerable to CVE-2022-38387.
No, the Linux kernel is not vulnerable to CVE-2022-38387.
You can find more information about CVE-2022-38387 at the IBM X-Force ID: 233786.