← Back

CVE-2023-43052

nvd nist
Published: Mar 7, 2025Modified: Jun 17, 2026

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Exploitability: 3.9 / Impact: 1.4
Source: psirt@us.ibm.com (Secondary)

Description

IBM Control Center 6.2.1 through 6.3.1 is vulnerable to an external service interaction attack, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability to induce the application to perform server-side DNS lookups or HTTP requests to arbitrary domain names. By submitting suitable payloads, an attacker can cause the application server to attack other systems that it can interact with.

Affected (2)

Products: Ibm: Control Center
1 product
Control Center
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 6.2.1.0
Version 6.3.1.0

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.