CVE-2023-27863

Severity
4.9MEDIUM
EPSS
0.1%
top 77.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 12

Description

IBM Spectrum Protect Plus Server 10.1.13, under specific configurations, could allow an elevated user to obtain SMB credentials that may be used to access vSnap data stores. IBM X-Force ID: 249325.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 0.7 | Impact: 3.6

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-8vwj-f33x-4pw9: IBM Spectrum Protect Plus Server 102023-05-12
CVEList
IBM Spectrum Protect Plus Server information disclosure2023-05-12