CVE-2023-22877: IBM InfoSphere Information Server
High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.
IBM InfoSphere Information Server 11.7 is potentially vulnerable to CSV Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 244368.
Affected products
- IBM InfoSphere Information Server: from 11.7.0.0, before 11.7.1.0 (fixed in 11.7.1.0); from 11.7.0.0, before 11.7.1.4 (fixed in 11.7.1.4)
Published 2023-08-28. Last modified 2026-06-17.