Vulnerabilities > IBM > Websphere Automation

DATE CVE VULNERABILITY TITLE RISK
2024-12-30 CVE-2024-54181 OS Command Injection vulnerability in IBM Websphere Automation 1.7.5
IBM WebSphere Automation 1.7.5 could allow a remote privileged user, who has authorized access to the swagger UI, to execute arbitrary code.
network
low complexity
ibm CWE-78
7.2
2024-05-01 CVE-2024-28764 Unspecified vulnerability in IBM Websphere Automation 1.7.0
IBM WebSphere Automation 1.7.0 could allow an attacker with privileged access to the network to conduct a CSV injection.
local
low complexity
ibm
7.8
2024-05-01 CVE-2024-28775 Unspecified vulnerability in IBM Websphere Automation 1.7.0
IBM WebSphere Automation 1.7.0 is vulnerable to cross-site scripting.
network
low complexity
ibm
5.4