First published: Fri Oct 06 2023(Updated: )
IBM HMC (Hardware Management Console) could allow a local user to escalate their privileges to root access on a restricted shell.
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM HMC V10.1.1010.0 | <=V10.1.1010.0 | |
IBM HMC V10.2.1030.0 | <=V10.2.1030.0 | |
IBM Hardware Management Console | =10.1.1010.0 | |
IBM Hardware Management Console | =10.2.1030.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-38280 is high with a CVSS score of 8.4.
A local user can escalate their privileges to root access on a restricted shell by exploiting CVE-2023-38280.
IBM HMC versions 10.1.1010.0 and 10.2.1030.0 are affected by CVE-2023-38280.
To fix the vulnerability CVE-2023-38280, it is recommended to update IBM HMC to a version that is not affected.
You can find more information about CVE-2023-38280 on the IBM X-Force ID: 260740 and the IBM Support website.