← Back to browse · API

CVE-2020-4448

Severity
CRITICAL
CVSS
9.8
EPSS
0.12224
Risk score
43.48
CISA KEV
No
PoC
No
Published
2020-06-05
Modified
2024-09-16
First seen
2026-08-07
Aliases
EUVD-2020-25695, GHSA-8P6X-Q5G6-57QH
Products
IBM:WebSphere Application Server 7.0, IBM:WebSphere Application Server 8.0, IBM:WebSphere Application Server 8.5, IBM:WebSphere Application Server 9.0
Sources
euvd EUVD-2020-25695

Description

IBM WebSphere Application Server Network Deployment 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to execute arbitrary code on the system with a specially-crafted sequence of serialized objects from untrusted sources. IBM X-Force ID: 181228.

References