VYPR

Watson Knowledge Catalog

by IBM

CVEs (3)

  • CVE-2023-28955Jul 10, 2023
    risk 0.00cvss epss 0.01

    IBM Watson Knowledge Catalog on Cloud Pak for Data 4.0 could allow an authenticated user send a specially crafted request that could cause a denial of service. IBM X-Force ID: 251704.

  • CVE-2023-28958Jul 10, 2023
    risk 0.00cvss epss 0.00

    IBM Watson Knowledge Catalog on Cloud Pak for Data 4.0 is potentially vulnerable to CSV Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 251782.

  • CVE-2022-41731Feb 6, 2023
    risk 0.00cvss epss 0.01

    IBM Watson Knowledge Catalog on Cloud Pak for Data 4.5.0 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 237402.