CVE-2023-47706: IBM Security Guardium Key Lifecycle Manager file upload
IBM Security Guardium Key Lifecycle Manager 4.3 could allow an authenticated user to upload files of a dangerous file type. IBM X-Force ID: 271341.
Other sources
IBM Security Guardium Key Lifecycle Manager could allow an authenticated user to upload files of a dangerous file type.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-47706?
CVE-2023-47706 is classified as a vulnerability that allows authenticated users to upload dangerous file types.
How do I fix CVE-2023-47706?
To fix CVE-2023-47706, apply the latest patches available for IBM Security Guardium Key Lifecycle Manager.
Who is affected by CVE-2023-47706?
CVE-2023-47706 affects users of IBM Security Guardium Key Lifecycle Manager version 4.2 and older versions up to 4.2.0.2.
What types of files can be uploaded due to CVE-2023-47706?
CVE-2023-47706 allows the upload of potentially malicious files due to improper validation of file types.
Is there a workaround for CVE-2023-47706?
There is currently no documented workaround for CVE-2023-47706 apart from applying the necessary patches.