CVE-2023-49886

Severity
9.8CRITICAL
EPSS
1.2%
top 21.21%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 6

Description

IBM Standards Processing Engine 10.0.1.10 could allow a remote attacker to execute arbitrary code on the system, caused by an unsafe java deserialization. By sending specially crafted input, an attacker could exploit this vulnerability to execute arbitrary code on the system.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-mjq7-jm96-v224: IBM Standards Processing Engine 102025-10-06
CVEList
IBM Transformation Extender Advanced code execution2025-10-06
CVE-2023-49886 (CRITICAL CVSS 9.8) | IBM Standards Processing Engine 10. | cvebase.io