PT-2023-27415 · Ibm · Ibm Storage Protect

Published

2023-09-20

·

Updated

2023-09-22

·

CVE-2023-40368

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Storage Protect versions 8.1.0.0 through 8.1.19.0
Description The issue allows a privileged user to obtain sensitive information from the administrative command line client.
Recommendations For versions 8.1.0.0 through 8.1.19.0, consider restricting access to the administrative command line client to minimize the risk of exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2023-40368

Affected Products

Ibm Storage Protect