CVE-2023-33854
5.3
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N
Exploitability: 1.6 / Impact: 3.6
Source: psirt@us.ibm.com (Secondary)
Description
IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8, 5.0, 5.1, 5.2, and 5.3 could allow an authenticated user to bypass client-side validation and manipulate input data using man in the middle techniques.
Affected (2)
Products: Ibm: Db2, Db2 Warehouse
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 4.8 to 5.4 | |
| From 4.8 to 5.4 |
| Running on/with | Platform Versions |
|---|---|
Ibm Cloud Pak For Data | All versions |
References (1)
Timeline
No history available yet.