CVE-2023-31004

CVSS 3.1 Score 9.0 of 10 (high)

Details

Published Feb 3, 2024
Updated: Feb 7, 2024
CWE ID 300

Summary

CVE-2023-31004: A serious vulnerability affects IBM Security Access Manager Container in versions 10.0.0.0 through 10.0.6.1, and IBM Security Verify Access Docker versions 10.0.0.0 through 10.0.6.1. The flaw exposes these systems to a man-in-the-middle attack, enabling an unauthorized user to gain access to the underlying system. IBM X-Force has assigned ID 254765 to this issue. Attackers can exploit this vulnerability without requiring valid credentials, posing a significant threat to the security and integrity of affected systems. IBM recommends immediate patching or mitigation measures to protect against potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share