CVE-2023-38268: IBM InfoSphere Information Server cross-site request forgery
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 260585.
Other sources
IBM InfoSphere Information Server is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2023-38268?
CVE-2023-38268 is a vulnerability in IBM InfoSphere Information Server 11.7 that allows an attacker to execute malicious actions through cross-site request forgery.
How severe is CVE-2023-38268?
CVE-2023-38268 has a severity rating of 4.3 (medium).
How does CVE-2023-38268 affect IBM InfoSphere Information Server?
CVE-2023-38268 affects IBM InfoSphere Information Server 11.7, allowing an attacker to execute unauthorized actions through cross-site request forgery.
How can I fix CVE-2023-38268?
To fix CVE-2023-38268, apply the provided patch from IBM: [Patch for CVE-2023-38268](https://www.ibm.com/support/pages/node/878310).
Where can I find more information about CVE-2023-38268?
You can find more information about CVE-2023-38268 on the [IBM support page](https://www.ibm.com/support/pages/node/7067682) and the [IBM X-Force ID page](https://exchange.xforce.ibmcloud.com/vulnerabilities/260585).