IBM Security Access Manager Container (IBM Security Verify Access Appliance 10.0.0.0 through 10.0.6.1 and IBM Security Verify Access Docker 10.0.6.1) temporarily stores sensitive information in files that could be accessed by a local user. IBM X-Force ID: 254653.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/7106586 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/254653 | VDB Entry Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
18 Jan 2024, 17:06
Type | Values Removed | Values Added |
---|---|---|
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/254653 - VDB Entry, Vendor Advisory | |
References | () https://www.ibm.com/support/pages/node/7106586 - Patch, Vendor Advisory | |
CPE | cpe:2.3:a:ibm:security_verify_access_docker:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access:*:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
First Time |
Ibm
Ibm security Verify Access Ibm security Verify Access Docker |
11 Jan 2024, 03:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-11 03:15
Updated : 2024-01-18 17:06
NVD link : CVE-2023-31001
Mitre link : CVE-2023-31001
JSON object : View
Products Affected
ibm
- security_verify_access
- security_verify_access_docker
CWE
CWE-257
Storing Passwords in a Recoverable Format