Description
IBM ODM allows an unauthenticated user to connect it to any LDAP server. An attacker can exploit it to achieve remote code execution.
Remediation
Upgrade to the latest version of IBM ODM
References
Security Bulletin: IBM Operational Decision Manager for January 2024 - Multiple CVEs addressed
To live is to fight, to fight is to live! - IBM ODM Remote Code Execution