CVE-2023-47741
5.3
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Exploitability: 0.9 / Impact: 4.0
Source: NVD
Description
IBM i 7.3, 7.4, 7.5, IBM i Db2 Mirror for i 7.4 and 7.5 web browser clients may leave clear-text passwords in browser memory that can be viewed using common browser tools before the memory is garbage collected. A malicious actor with access to the victim's PC could exploit this vulnerability to gain access to the IBM i operating system. IBM X-Force ID: 272532.
Affected (5)
Products: Ibm: Db2 Mirror For I, I
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 7.4 | |
| Version 7.3 |
References (4)
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Timeline
No history available yet.