CVE-2023-40368: IBM Storage Protect information disclosure
IBM Storage Protect 8.1.0.0 through 8.1.19.0 could allow a privileged user to obtain sensitive information from the administrative command line client. IBM X-Force ID: 263456.
Other sources
IBM Storage Protect Client could allow a privileged user to obtain sensitive information from the administrative command line client.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2023-40368.
What is the affected software for this vulnerability?
The affected software for this vulnerability is IBM Storage Protect Client version 8.1.0.0 through 8.1.19.0.
What is the severity of CVE-2023-40368?
The severity of CVE-2023-40368 is medium (4.4).
How can a privileged user obtain sensitive information from the IBM Storage Protect Client?
A privileged user can obtain sensitive information from the IBM Storage Protect Client through the administrative command line client.
Is there any reference material available for this vulnerability?
Yes, you can find reference material for this vulnerability at the following links: [link1](https://exchange.xforce.ibmcloud.com/vulnerabilities/263456), [link2](https://www.ibm.com/support/pages/node/7034288).