← Back to browse · API

CVE-2024-22320

Severity
CRITICAL
CVSS
9.8
EPSS
0.73398
Risk score
64.89
CISA KEV
No
PoC
No
Published
2024-02-02
Modified
2025-05-07
First seen
2026-08-07
Aliases
EUVD-2024-19881, GHSA-5PQ5-CP3W-7CHJ
Products
IBM:Operational Decision Manager, IBM:Operational Decision Manager 8.10.3
Sources
euvd EUVD-2024-19881

Description

IBM Operational Decision Manager 8.10.3 could allow a remote authenticated attacker to execute arbitrary code on the system, caused by an unsafe deserialization. By sending specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code in the context of SYSTEM. IBM X-Force ID: 279146.

References