First published: Tue Jun 25 2024(Updated: )
IBM Security Access Manager Container could disclose sensitive information to a local user to do improper permission controls.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Access Manager Appliance | >=10.0.0.0<=10.0.7.1 | |
IBM Security Verify Access | <=10.0.0.0 - 10.0.7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-38368 is considered a high severity vulnerability due to its potential to disclose sensitive information.
To address CVE-2023-38368, upgrade IBM Security Access Manager Docker to version 10.0.8 or later.
CVE-2023-38368 affects IBM Security Verify Access Docker versions 10.0.0.0 through 10.0.7.1.
CVE-2023-38368 could disclose sensitive information due to improper permission controls.
Yes, CVE-2023-38368 could allow local users to access sensitive information unintentionally.