IBM Storage Protect information disclosure
CVE-2023-40368
4.4MEDIUM
Key Information:
- Vendor
- IBM
- Status
- Vendor
- CVE Published:
- 20 September 2023
Summary
IBM Storage Protect 8.1.0.0 through 8.1.19.0 could allow a privileged user to obtain sensitive information from the administrative command line client. IBM X-Force ID: 263456.
Affected Version(s)
Storage Protect Client 8.1.0.0 <= 8.1.19.0
Storage Protect for Space Management 8.1.0.0 <= 8.1.19.0
Storage Protect for Virtual Environments 8.1.0.0 <= 8.1.19.0
References
CVSS V3.1
Score:
4.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved