CVE-2023-46181Use of Web Browser Cache Containing Sensitive Information in IBM Secure Proxy

Severity
3.3LOWNVD
CNA4.0
EPSS
0.0%
top 92.34%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 15

Description

IBM Sterling Secure Proxy 6.0.3 and 6.1.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 269686.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 1.8 | Impact: 1.4

Affected Packages2 packages

NVDibm/sterling_secure_proxy6.0.3, 6.1.0+1
CVEListV5ibm/secure_proxy6.0.3, 6.1.0

Patches

🔴Vulnerability Details

2
CVEList
IBM Secure Proxy information disclosure2024-03-15
GHSA
GHSA-xp2v-rf5w-rh2c: IBM Sterling Secure Proxy 62024-03-15
CVE-2023-46181 — IBM Secure Proxy vulnerability | cvebase