CVE-2015-7818: IBM System Networking Switch Center
High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.
The administration-panel web service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8.1.2.0 allows local users to execute arbitrary JSP code with SYSTEM privileges by using the Apache Axis AdminService deployment method to install a .jsp file.
Affected products
- IBM System Networking Switch Center: up to and including 7.3.1.4
- Lenovo Switch Center: up to and including 8.1.1.0
Published 2015-11-12. Last modified 2026-06-17.