5.3
CVE-2023-38265
- EPSS 0.05%
- Veröffentlicht 17.02.2026 19:06:58
- Zuletzt bearbeitet 23.02.2026 13:10:40
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
IBM Cloud Pak System 2.3.3.6, 2.3.3.7, 2.3.4.0, 2.3.4.1, and 2.3.5.0 could disclose folder location information to an unauthenticated attacker that could aid in further attacks against the system.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Cloud Pak System Version2.3.3.6 Update-
Ibm ≫ Cloud Pak System Version2.3.3.7 Update-
Ibm ≫ Cloud Pak System Version2.3.4.0 Update-
Ibm ≫ Cloud Pak System Version2.3.4.1 Update-
Ibm ≫ Cloud Pak System Version2.3.5.0 Update-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.05% | 0.145 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@us.ibm.com | 5.3 | 3.9 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
CWE-548 Exposure of Information Through Directory Listing
A directory listing is inappropriately exposed, yielding potentially sensitive information to attackers.