CVE-2023-47704

Severity
7.5HIGH
EPSS
0.1%
top 81.26%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 20

Description

IBM Security Guardium Key Lifecycle Manager 4.3 contains plain text hard-coded credentials or other secrets in source code repository. IBM X-Force ID: 271220.

CVSS vector

CVSS:3.1/AV:A/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:NExploitability: 0.4 | Impact: 3.6

Affected Packages2 packages

🔴Vulnerability Details

2
CVEList
IBM Security Guardium Key Lifecycle Manager information disclosure2023-12-20
GHSA
GHSA-rg4q-3xgq-2623: IBM Security Guardium Key Lifecycle Manager 42023-12-20
CVE-2023-47704 (HIGH CVSS 7.5) | IBM Security Guardium Key Lifecycle | cvebase.io