CVE-2023-47712Incorrect Permission Assignment in IBM Security Guardium

Severity
7.8HIGHNVD
EPSS
0.0%
top 94.75%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 14

Description

IBM Security Guardium 11.3, 11.4, 11.5, and 12.0 could allow a local user to gain elevated privileges on the system due to improper permissions control. IBM X-Force ID: 271527.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5ibm/security_guardium11.3, 11.4, 11.5, 12.0
NVDibm/security_guardium4 versions+3

🔴Vulnerability Details

2
GHSA
GHSA-wxcf-6q4p-3735: IBM Security Guardium 112024-05-14
CVEList
IBM Security Guardium privilege escalation2024-05-11
CVE-2023-47712 — Incorrect Permission Assignment in IBM | cvebase