CVE-2023-45184: IBM i Access Client Solutions
IBM i Access Client Solutions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3 could allow an attacker to obtain a decryption key due to improper authority checks. IBM X-Force ID: 268270.
Other sources
IBM i Access Client Solutions could allow an attacker to obtain a decryption key due to improper authority checks.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45184?
CVE-2023-45184 has a critical severity rating due to the potential for unauthorized access to decryption keys.
How do I fix CVE-2023-45184?
To fix CVE-2023-45184, upgrade the IBM i Access Client Solutions to versions beyond 1.1.9.3.
Who is affected by CVE-2023-45184?
CVE-2023-45184 affects IBM i Access Client Solutions versions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3.
What causes CVE-2023-45184?
CVE-2023-45184 is caused by improper authority checks that allow attackers to obtain a decryption key.
Is there a workaround for CVE-2023-45184?
Currently, there are no recommended workarounds for CVE-2023-45184; the only solution is to apply the necessary updates.