← Back to browse · API

CVE-2024-22319

Severity
HIGH
CVSS
8.1
EPSS
0.764
Risk score
59.14
CISA KEV
No
PoC
No
Published
2024-02-02
Modified
2024-08-01
First seen
2026-08-08
Aliases
EUVD-2024-19880, GHSA-X4HH-7HPG-JMCG
Products
IBM:Operational Decision Manager, IBM:Operational Decision Manager 8.10.3, 8.10.4, 8.10.5.1, 8.11, 8.11.0.1, 8.11.1, 8.12.0.1
Sources
euvd EUVD-2024-19880

Description

IBM Operational Decision Manager 8.10.3, 8.10.4, 8.10.5.1, 8.11, 8.11.0.1, 8.11.1 and 8.12.0.1 is susceptible to remote code execution attack via JNDI injection when passing an unchecked argument to a certain API. IBM X-Force ID: 279145.

References