cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-28955,https://securityvulnerability.io/vulnerability/CVE-2023-28955,IBM Watson Knowledge Catalog denial of service,IBM Watson Knowledge Catalog on Cloud Pak for Data 4.0 could allow an authenticated user send a specially crafted request that could cause a denial of service. IBM X-Force ID: 251704.,IBM,Watson Knowledge Catalog On Cloud Pak For Data,6.5,MEDIUM,0.000590000010561198,false,,false,false,false,,,false,false,,2023-07-10T01:09:59.829Z,0 CVE-2023-28958,https://securityvulnerability.io/vulnerability/CVE-2023-28958,IBM Watson Knowledge Catalog CSV injection,"The IBM Watson Knowledge Catalog on Cloud Pak for Data 4.0 is susceptible to CSV Injection. This vulnerability arises from insufficient validation of CSV file contents, enabling a remote attacker to craft malicious CSV files that could execute arbitrary commands on the system. Proper mitigation strategies should be implemented to safeguard sensitive information and protect against unauthorized command execution.",IBM,Watson Knowledge Catalog On Cloud Pak For Data,7,HIGH,0.0005300000193528831,false,,false,false,false,,,false,false,,2023-07-10T01:06:17.925Z,0