4
CVE-2023-23469
- EPSS 0.03%
- Published 01.02.2023 19:15:08
- Last modified 26.03.2025 15:15:46
- Source psirt@us.ibm.com
- Teams watchlist Login
- Open Login
IBM ICP4A - Automation Decision Services 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, and 22.0.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 244504.
Data is provided by the National Vulnerability Database (NVD)
Ibm ≫ Cloud Pak For Business Automation Version >= 18.0.0 <= 20.0.3
Ibm ≫ Cloud Pak For Business Automation Version21.0.1 Update-
Ibm ≫ Cloud Pak For Business Automation Version21.0.1 Updateinterim_fix_001
Ibm ≫ Cloud Pak For Business Automation Version21.0.1 Updateinterim_fix_002
Ibm ≫ Cloud Pak For Business Automation Version21.0.1 Updateinterim_fix_003
Ibm ≫ Cloud Pak For Business Automation Version21.0.1 Updateinterim_fix_004
Ibm ≫ Cloud Pak For Business Automation Version21.0.1 Updateinterim_fix_005
Ibm ≫ Cloud Pak For Business Automation Version21.0.1 Updateinterim_fix_006
Ibm ≫ Cloud Pak For Business Automation Version21.0.1 Updateinterim_fix_007
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Update-
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Updateinterim_fix_001
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Updateinterim_fix_0012
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Updateinterim_fix_002
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Updateinterim_fix_003
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Updateinterim_fix_004
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Updateinterim_fix_005
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Updateinterim_fix_006
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Updateinterim_fix_007
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Updateinterim_fix_008
Ibm ≫ Cloud Pak For Business Automation Version21.0.2 Updateinterim_fix_009
Ibm ≫ Cloud Pak For Business Automation Version21.0.3 Update-
Ibm ≫ Cloud Pak For Business Automation Version21.0.3 Updateinterim_fix_001
Ibm ≫ Cloud Pak For Business Automation Version21.0.3 Updateinterim_fix_002
Ibm ≫ Cloud Pak For Business Automation Version21.0.3 Updateinterim_fix_003
Ibm ≫ Cloud Pak For Business Automation Version21.0.3 Updateinterim_fix_004
Ibm ≫ Cloud Pak For Business Automation Version21.0.3 Updateinterim_fix_005
Ibm ≫ Cloud Pak For Business Automation Version21.0.3 Updateinterim_fix_006
Ibm ≫ Cloud Pak For Business Automation Version21.0.3 Updateinterim_fix_007
Ibm ≫ Cloud Pak For Business Automation Version21.0.3 Updateinterim_fix_008
Ibm ≫ Cloud Pak For Business Automation Version22.0.2 Update-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.03% | 0.047 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 3.3 | 1.8 | 1.4 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
|
psirt@us.ibm.com | 4 | 2.5 | 1.4 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
CWE-525 Use of Web Browser Cache Containing Sensitive Information
The web application does not use an appropriate caching policy that specifies the extent to which each web page and associated form fields should be cached.