CVE-2023-40363Incorrect Default Permissions in IBM Infosphere Information Server

Severity
6.5MEDIUMNVD
CNA8.1
EPSS
0.0%
top 89.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 18

Description

IBM InfoSphere Information Server 11.7 could allow an authenticated user to change installation files due to incorrect file permission settings. IBM X-Force ID: 263332.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-wx63-xfhg-5c9g: IBM InfoSphere Information Server 112023-11-18
CVEList
IBM InfoSphere Information Server privilege escalation2023-11-18
CVE-2023-40363 — Incorrect Default Permissions in IBM | cvebase