CNNVD-202509-2871 Information

CNNVD ID

CNNVD-202509-2871

CVE-2025-36143

  • CNNVD Published: 2025-09-18

Description (Chinese)

IBM Watsonx.data是美国国际商业机器(IBM)公司的一款开放式数据湖仓平台。 IBM Watsonx.data 2.2版本存在操作系统命令注入漏洞,该漏洞源于未正确验证用户输入,可能导致特权用户执行任意命令。

Description (English)

IBM Watsonx.data is an open-data lake platform of the United States International Business Machine (IBM). Version 2.2 of IBM Watsonx.data contains a loophole in the operating system command, which originates from an incorrect validation of user input and may result in the privileged user performing an arbitrary command.

Hazard Level

High

Vulnerability Type

操作系统命令注入

Affected Vendor

ICEcoder

Published

2025-09-18

Last Modified

2026-02-24

References

https://www.ibm.com/support/pages/node/7245379

Patch

https://www.ibm.com/support/pages/node/7245379

Share on: