CVE-2019-4521: IBM Cloud Pak System

Critical severity, CVSS 9.8. EPSS: 2.6% chance of exploitation in the next 30 days.

Platform System Manager in IBM Cloud Pak System 2.3 is potentially vulnerable to CVS Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 165179.

Affected products

  • IBM Cloud Pak System: version 2.3 only; version 2.3.0.1 only

Published 2019-12-10. Last modified 2026-06-17.