CVE-2019-4130: IBM Cloud Pak System

High severity, CVSS 8.8. EPSS: 2% chance of exploitation in the next 30 days.

IBM Cloud Pak System 2.3 and 2.3.0.1 could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server. IBM X-Force ID: 158280.

Affected products

  • IBM Cloud Pak System: version 2.3 only; version 2.3.0.1 only

Published 2019-12-03. Last modified 2026-06-17.