Metrics
Affected Vendors & Products
No advisories yet.
Solution
IBM strongly recommends addressing the vulnerability now by upgrading. Product(s) Version(s) number and/or range Remediation/Fix/Instructions DataStage on Cloud Pak for Data 5.1.2 - 5.3.0 Upgrade to version 5.3.1 or later
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7262347 |
|
Tue, 03 Mar 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 03 Mar 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM DataStage on Cloud Pak for Data 5.1.2 through 5.3.0 could allow an authenticated user to execute arbitrary commands with normal user privileges on the system due to improper validation of user supplied input through the job subroutine component. | |
| Title | DataStage on Cloud Pak for Data is vulnerable to arbitrary code injection due to runtime environment | |
| First Time appeared |
Ibm
Ibm datastage On Cloud Pak For Data |
|
| Weaknesses | CWE-78 | |
| CPEs | cpe:2.3:a:ibm:datastage_on_cloud_pak_for_data:5.1.2:*:*:*:*:*:*:* cpe:2.3:a:ibm:datastage_on_cloud_pak_for_data:5.3.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm datastage On Cloud Pak For Data |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-03-03T21:31:57.708Z
Reserved: 2025-11-25T19:54:37.040Z
Link: CVE-2025-13686
Updated: 2026-03-03T21:31:52.868Z
Status : Awaiting Analysis
Published: 2026-03-03T21:15:55.933
Modified: 2026-03-03T21:52:29.877
Link: CVE-2025-13686
No data.
OpenCVE Enrichment
No data.