First published: Wed Jan 31 2024(Updated: )
IBM PowerSC 1.3, 2.0, and 2.1 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 275107.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM PowerSC | <=1.3 | |
IBM PowerSC | <=2.0 | |
IBM PowerSC | <=2.1 | |
IBM PowerSC | =1.3 | |
IBM PowerSC | =2.0 | |
IBM PowerSC | =2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-50326 is considered a medium severity vulnerability due to its potential for exploitation through brute-force attacks.
To fix CVE-2023-50326, update IBM PowerSC to the latest version that has mitigated the inadequate account lockout setting.
CVE-2023-50326 affects IBM PowerSC versions 1.3, 2.0, and 2.1.
Yes, CVE-2023-50326 can be exploited remotely by an attacker attempting to brute force account credentials.
The potential impacts of CVE-2023-50326 include unauthorized access to accounts and sensitive information due to compromised credentials.