7.5
CVE-2023-38010
- EPSS 0.02%
- Veröffentlicht 04.02.2026 20:24:56
- Zuletzt bearbeitet 25.02.2026 15:09:47
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
Multiple Vulnerabilities in IBM Cloud Pak System
IBM Cloud Pak System displays sensitive information in user messages that could aid in further attacks against the system.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Cloud Pak System Version2.3.4.0 Update-
Ibm ≫ Cloud Pak System Version2.3.4.1 Update-
Ibm ≫ Cloud Pak System Version2.3.4.1 Updateifix1
Ibm ≫ Cloud Pak System Version2.3.5.0 Update-
Ibm ≫ Cloud Pak System Version2.3.6.0 Update-
Ibm ≫ Os Image For Red Hat Linux Systems Version4.0.4.0
Ibm ≫ Os Image For Red Hat Linux Systems Version4.0.5.0
Ibm ≫ Os Image For Red Hat Linux Systems Version4.0.6.0
Ibm ≫ Os Image For Red Hat Linux Systems Version4.0.7.0
Ibm ≫ Os Image For Red Hat Linux Systems Version5.0.0.0
Ibm ≫ Os Image For Red Hat Linux Systems Version5.0.1.0
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.031 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
| psirt@us.ibm.com | 5.3 | 3.9 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
CWE-209 Generation of Error Message Containing Sensitive Information
The product generates an error message that includes sensitive information about its environment, users, or associated data.