← volver
CVE-2023-25921highCWE-434

IBM Security Guardium Key Lifecycle Manager file upload

21Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 8.5epss 1.1%
probabilidad de explotación
1.1%top 36% de las CVE
explotación observada
noninguna fuente lo reporta
IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 allows the attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment. IBM X-Force ID: 247620.
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H