Vulnerabilities > IBM > Tivoli Storage Productivity Center > High

DATE CVE VULNERABILITY TITLE RISK
2019-05-09 CVE-2019-4071 Improper Neutralization of Formula Elements in a CSV File vulnerability in IBM products
IBM Tivoli Storage Productivity Center (IBM Spectrum Control Standard Edition 5.2.1 through 5.2.17) could allow a remote attacker to execute arbitrary commands on the system, caused by improper validation of csv file contents.
network
low complexity
ibm CWE-1236
8.8
2017-02-01 CVE-2016-8941 Cross-Site Request Forgery (CSRF) vulnerability in IBM products
IBM Tivoli Storage Productivity Center is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
network
low complexity
ibm CWE-352
8.8