First published: Wed Mar 06 2024(Updated: )
IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated user to arbitrarily read files after enumerating file names.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM R9.2 | <=89.22.19.0 | |
IBM R9.3 | <=89.30.68.0 89.32.40.0 89.33.48.0 | |
All of | ||
Any of | ||
IBM DS8900F Firmware | =89.22.19.0 | |
IBM DS8900F Firmware | =89.30.68.0 | |
IBM DS8900F Firmware | =89.32.40.0 | |
IBM DS8900F Firmware | =89.33.48.0 | |
IBM DS8900F |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-46170 has been classified with a severity level that indicates a significant security risk for affected versions.
To address CVE-2023-46170, users should update to the latest patched versions of IBM DS8900F HMC.
CVE-2023-46170 affects users of IBM DS8900F HMC versions 89.21.19.0 through 89.33.48.0.
CVE-2023-46170 is a file reading vulnerability that allows authenticated users to read arbitrary files.
CVE-2023-46170 cannot be exploited remotely as it requires authenticated access to the affected systems.