CVE-2023-22878: IBM InfoSphere Information Server information disclosure
IBM InfoSphere Information Server 11.7 stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 244373.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of IBM InfoSphere Information Server?
The vulnerability ID of IBM InfoSphere Information Server is CVE-2023-22878.
How severe is the vulnerability CVE-2023-22878?
The severity of the vulnerability CVE-2023-22878 is medium with a severity value of 5.5.
What software version is affected by CVE-2023-22878?
IBM InfoSphere Information Server version 11.7 is affected by CVE-2023-22878.
How can a local user read user credentials in plain text in IBM InfoSphere Information Server?
A local user can read user credentials in plain text in IBM InfoSphere Information Server by exploiting the vulnerability CVE-2023-22878.
Is IBM AIX affected by the vulnerability CVE-2023-22878?
No, IBM AIX is not affected by the vulnerability CVE-2023-22878.
Is Linux Kernel affected by the vulnerability CVE-2023-22878?
No, Linux Kernel is not affected by the vulnerability CVE-2023-22878.
Is Microsoft Windows affected by the vulnerability CVE-2023-22878?
No, Microsoft Windows is not affected by the vulnerability CVE-2023-22878.
What is the Common Weakness Enumeration (CWE) ID of CVE-2023-22878?
The Common Weakness Enumeration (CWE) ID of CVE-2023-22878 is CWE-312.
Where can I find more information about the vulnerability CVE-2023-22878?
You can find more information about the vulnerability CVE-2023-22878 on the IBM X-Force ID 244373 page and the IBM support page.