CVE-2023-25922

IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 allows the attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment. IBM X-Force ID: 247621.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:ibm:security_guardium_key_lifecycle_manager:*:*:*:*:*:*:*:*
OR cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-02-28 22:15

Updated : 2024-12-13 20:59


NVD link : CVE-2023-25922

Mitre link : CVE-2023-25922

CVE.ORG link : CVE-2023-25922


JSON object : View

Products Affected

microsoft

  • windows

linux

  • linux_kernel

ibm

  • aix
  • security_guardium_key_lifecycle_manager
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type