HIGH
IBM Spectrum Virtualize privilege escalation
Published Feb 22, 2023
8.8
HIGHCVSS 3.1
EPSS 0.61%
Description
An authenticated user can exploit a vulnerability in the IBM Spectrum Virtualize 8.2, 8.3, 8.4, and 8.5 GUI to execute code and escalate their privilege on the system. IBM X-Force ID: 239847.
Affected products
-
- Version 8.2, 8.3, 8.4, 8.5StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| IBM | Spectrum Virtualize | unaffected |
|
OR
- 8.2.0.0
- 8.3.0.0
- 8.4.0.0
- 8.5.0.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (2)
- https://exchange.xforce.ibmcloud.com/vulnerabilities/239847 vdb-entryVDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/6858047 vendor-advisoryVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://exchange.xforce.ibmcloud.com/vulnerabilities/239847 | vdb-entryVDB EntryVendor Advisory | |
| https://www.ibm.com/support/pages/node/6858047 | vendor-advisoryVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner ibm
Published Feb 22, 2023
Updated Aug 3, 2024
Reserved Oct 26, 2022
Link CVE-2022-43873
CISA Vulnrichment
Updated n/a