CVE-2023-25922

IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 allows the attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment. IBM X-Force ID: 247621.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:ibm:security_guardium_key_lifecycle_manager:*:*:*:*:*:*:*:*
OR cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

13 Dec 2024, 20:59

Type Values Removed Values Added
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/247621 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/247621 - VDB Entry
References () https://www.ibm.com/support/pages/node/6964516 - () https://www.ibm.com/support/pages/node/6964516 - Patch, Vendor Advisory
CPE cpe:2.3:a:ibm:security_guardium_key_lifecycle_manager:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
CWE CWE-434
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
First Time Ibm security Guardium Key Lifecycle Manager
Linux
Microsoft windows
Microsoft
Linux linux Kernel
Ibm
Ibm aix

28 Feb 2024, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-28 22:15

Updated : 2024-12-13 20:59


NVD link : CVE-2023-25922

Mitre link : CVE-2023-25922


JSON object : View

Products Affected

linux

  • linux_kernel

ibm

  • security_guardium_key_lifecycle_manager
  • aix

microsoft

  • windows
CWE

No CWE.