Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-46058 | IBM Data Virtualization Manager for z/OS 1.1 and 1.2 could allow an authenticated user to inject malicious JDBC URL parameters and execute code on the server. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7177091 |
|
Mon, 04 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm data Virtualization Manager For Z\/os
|
|
| CPEs | cpe:2.3:a:ibm:data_virtualization_manager_for_z\/os:1.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:data_virtualization_manager_for_z\/os:1.2:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm data Virtualization Manager For Z\/os
|
Tue, 26 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm
Ibm data Virtualization Manager For Z-os |
|
| CPEs | cpe:2.3:a:ibm:data_virtualization_manager_for_z-os:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ibm
Ibm data Virtualization Manager For Z-os |
|
| Metrics |
ssvc
|
Tue, 26 Nov 2024 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Data Virtualization Manager for z/OS 1.1 and 1.2 could allow an authenticated user to inject malicious JDBC URL parameters and execute code on the server. | |
| Title | IBM Data Virtualization Manager code execution | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2024-11-26T15:29:29.620Z
Reserved: 2024-11-17T14:25:44.935Z
Link: CVE-2024-52899
Updated: 2024-11-26T15:29:23.857Z
Status : Analyzed
Published: 2024-11-26T01:15:07.153
Modified: 2025-08-04T15:11:49.560
Link: CVE-2024-52899
No data.
OpenCVE Enrichment
No data.
EUVD