← Back to browse · API

CVE-2020-4464

Severity
HIGH
CVSS
8.8
EPSS
0.13227
Risk score
39.83
CISA KEV
No
PoC
No
Published
2020-07-17
Modified
2024-09-17
First seen
2026-08-07
Aliases
EUVD-2020-25711, GHSA-57JH-54R4-H5X5
Products
IBM:WebSphere Application Server 7.0, IBM:WebSphere Application Server 8.0, IBM:WebSphere Application Server 8.5, IBM:WebSphere Application Server 9.0
Sources
euvd EUVD-2020-25711

Description

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 traditional could allow a remote attacker to execute arbitrary code on a system with a specially-crafted sequence of serialized objects over the SOAP connector. IBM X-Force ID: 181489.

References