CVE-2023-27545: IBM Watson CloudPak for Data Data Stores information disclosure
IBM Watson CloudPak for Data Data Stores information disclosure 4.6.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 248947.
Other sources
IBM Watson CP4D Data Stores allows web pages to be stored locally which can be read by another user on the system.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-27545?
CVE-2023-27545 is classified as a moderate severity vulnerability due to potential information disclosure issues.
How do I fix CVE-2023-27545?
To fix CVE-2023-27545, users should upgrade to IBM Watson CloudPak for Data Data Stores version 4.6.3 or later.
What impact does CVE-2023-27545 have on users?
CVE-2023-27545 allows local web pages to be read by another user on the system, potentially exposing sensitive information.
Which versions of IBM Watson CloudPak for Data Data Stores are affected by CVE-2023-27545?
CVE-2023-27545 affects IBM Watson CloudPak for Data Data Stores versions prior to 4.6.3.
Is there a workaround for CVE-2023-27545?
Currently, the best approach for CVE-2023-27545 is to apply the available update to mitigate the risk.