CVE-2023-37405

I

BM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.36 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, 2.3.4.0, and 2.3.4.1 stores sensitive data in memory, that could be obtained by an unauthorized user.

References
Link Resource
https://www.ibm.com/support/pages/node/7229212 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:cloud_pak_system:2.3.1.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.0:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.3:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.3:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.4:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.5:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:ifix2:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.7:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.7:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.4.0:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.4.1:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system_software_suite:2.3.2.0:*:*:*:*:*:*:*

History

18 Aug 2025, 18:46

Type Values Removed Values Added
References () https://www.ibm.com/support/pages/node/7229212 - () https://www.ibm.com/support/pages/node/7229212 - Vendor Advisory
First Time Ibm cloud Pak System Software Suite
Ibm
Ibm cloud Pak System
CPE cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.4.1:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.3:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.0:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.1.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:ifix2:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.4.0:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system_software_suite:2.3.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.4:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.5:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.7:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.7:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.3:ifix1:*:*:*:*:*:*
Summary
  • (es) IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.36 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, 2.3.4.0 y 2.3.4.1 almacenan datos confidenciales en la memoria que un usuario no autorizado podría obtener.

27 Mar 2025, 18:17

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-27 18:17

Updated : 2025-08-18 18:46


NVD link : CVE-2023-37405

Mitre link : CVE-2023-37405

CVE.ORG link : CVE-2023-37405


JSON object : View

CWE
CWE-311

Missing Encryption of Sensitive Data