IBM Security Access Manager Container 10.0.0.0 through 10.0.6.1 does not require that docker images should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 261196.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/261196 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/pages/node/7106586 | Patch Vendor Advisory |
Configurations
History
10 Feb 2024, 04:01
Type | Values Removed | Values Added |
---|---|---|
First Time |
Ibm
Ibm security Access Manager Container |
|
CPE | cpe:2.3:a:ibm:security_access_manager_container:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
Summary |
|
|
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/261196 - VDB Entry, Vendor Advisory | |
References | () https://www.ibm.com/support/pages/node/7106586 - Patch, Vendor Advisory |
07 Feb 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-02-07 17:15
Updated : 2024-02-10 04:01
NVD link : CVE-2023-38369
Mitre link : CVE-2023-38369
CVE.ORG link : CVE-2023-38369
JSON object : View
Products Affected
ibm
- security_access_manager_container
CWE
CWE-521
Weak Password Requirements