PT-2025-13389 · Ibm · Ibm Cloud Pak System

Published

2025-03-27

·

Updated

2025-08-18

·

CVE-2023-38272

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Cloud Pak System versions 2.3.3.0 through 2.3.4.1
Description The issue could allow a user with access to the network to obtain sensitive information from CLI arguments.
Recommendations For versions 2.3.3.0 through 2.3.4.1, consider restricting access to the network to minimize the risk of exploitation. As a temporary workaround, consider disabling the use of sensitive CLI arguments until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2023-38272

Affected Products

Ibm Cloud Pak System