PT-2025-15985 · Ibm · Ibm Sterling Control Center

Published

2025-04-10

·

Updated

2025-07-18

·

CVE-2023-43035

CVSS v3.1

4.0

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions: IBM Sterling Control Center versions 6.2.1 through 6.4.0
Description: The issue allows web pages to be stored locally, which can then be read by another user on the system, potentially exposing sensitive information.
Recommendations: For versions 6.2.1, 6.3.1, and 6.4.0, consider clearing the web browser cache regularly to minimize the risk of sensitive information being accessed by other users. As a temporary workaround, restrict access to sensitive web pages to prevent them from being stored locally. Avoid using the web browser cache to store sensitive information until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2023-43035

Affected Products

Ibm Sterling Control Center