IBM Cloud Pak for Security是美国国际商业机器(IBM)公司的一款应用软件。一个开放的安全平台,可连接到您现有的数据源以产生更深刻的见解,并使您能够更快地采取自动化行动。 IBM Cloud Pak for Security (CP4S) 1.9.0.0至1.9.2.0版本存在安全漏洞,该漏洞源于允许攻击者使用一个租户的API密钥访问另一个租户账户中的数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Cloud Pak for Security | 1.9.0.0 ~ 1.9.2.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-34352 | 6.5 MEDIUM | IBM QRadar information disclosure |
| CVE-2023-32339 | 6.1 MEDIUM | IBM Business Automation Workflow cross-site scripting |
| CVE-2023-26276 | 5.9 MEDIUM | IBM QRadar information disclosure |
| CVE-2023-23468 | 5.1 MEDIUM | IBM Robotic Process Automation for Cloud Pak access control |
| CVE-2023-26274 | 4.6 MEDIUM | IBM QRadar cross-site scripting |
| CVE-2023-26273 | 4.3 MEDIUM | IBM QRadar security bypass |
| CVE-2023-22593 | 4.0 MEDIUM | IBM Robotic Process Automation for Cloud Pak security configuration |
No comments yet