IBM Standards Processing Engine 10.0.1.10 could allow a remote attacker to execute arbitrary code on the system, caused by an unsafe java deserialization. By sending specially crafted input, an attacker could exploit this vulnerability to execute arbitrary code on the system.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7247179 | Vendor Advisory |
Configurations
History
16 Oct 2025, 18:13
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:ibm:transformation_extender_advanced:10.0.1:*:*:*:*:*:*:* | |
| First Time |
Ibm transformation Extender Advanced
Ibm |
|
| References | () https://www.ibm.com/support/pages/node/7247179 - Vendor Advisory |
06 Oct 2025, 15:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-06 15:16
Updated : 2025-10-16 18:13
NVD link : CVE-2023-49886
Mitre link : CVE-2023-49886
CVE.ORG link : CVE-2023-49886
JSON object : View
Products Affected
ibm
- transformation_extender_advanced
CWE
CWE-502
Deserialization of Untrusted Data
