Vulnerability Details CVE-2023-22877
IBM InfoSphere Information Server 11.7 is potentially vulnerable to CSV Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 244368.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 39.8%
CVSS Severity
CVSS v3 Score 7.0
Products affected by CVE-2023-22877
-
cpe:2.3:a:ibm:infosphere_information_server:*
-
cpe:2.3:a:ibm:infosphere_information_server:11.7.0.1
-
cpe:2.3:a:ibm:infosphere_information_server:11.7.0.2
-
cpe:2.3:a:ibm:infosphere_information_server:11.7.1