First published: Fri Mar 21 2025(Updated: )
IBM Storage Virtualize vSphere Remote Plug-in 1.0 and 1.1 could allow a remote user to obtain sensitive credential information after deployment.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Storage Virtualize | >=1.0<=1.1 | |
IBM Storage Virtualize | <=1.0 | |
IBM Storage Virtualize | <=1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-43029 is classified as a critical vulnerability because it allows remote users to access sensitive credential information.
To mitigate CVE-2023-43029, upgrade your IBM Storage Virtualize vSphere Remote Plug-in to version 1.2 or later.
CVE-2023-43029 affects IBM Storage Virtualize vSphere Remote Plug-in versions 1.0 and 1.1.
Organizations using IBM Storage Virtualize vSphere Remote Plug-in versions 1.0 or 1.1 are vulnerable to CVE-2023-43029.
Yes, CVE-2023-43029 can be exploited remotely, allowing attackers to gain unauthorized access to sensitive credentials.