CVE-2023-38714
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Jan 25, 2025
CWE ID 209
Summary
CVE-2023-38714 is a vulnerability affecting IBM Cloud Pak System versions 2.3.3.0 through 2.3.3.7, and their respective iFixes. This issue allows an unauthenticated attacker to disclose sensitive information about the system, potentially enabling further attacks against the system. The exact nature of the information disclosed is not clear from the available information. IBM strongly advises users to apply the available patches to mitigate this risk. This vulnerability may pose a significant threat to the security and integrity of affected systems.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- IBM Corporation