CVE-2023-47140

IBM CICS Transaction Gateway 9.3 could allow a user to transfer or view files due to improper access controls.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:cics_transaction_gateway:9.3:*:*:*:*:*:*:*

History

27 Sep 2024, 14:15

Type Values Removed Values Added
CWE CWE-266
References
  • {'url': 'https://exchange.xforce.ibmcloud.com/vulnerabilities/270259', 'tags': ['VDB Entry', 'Vendor Advisory'], 'source': 'psirt@us.ibm.com'}
Summary (en) IBM CICS Transaction Gateway 9.3 could allow a user to transfer or view files due to improper access controls. IBM X-Force ID: 270259. (en) IBM CICS Transaction Gateway 9.3 could allow a user to transfer or view files due to improper access controls.

11 Jan 2024, 16:58

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.1
CWE NVD-CWE-Other
First Time Ibm cics Transaction Gateway
Ibm
CPE cpe:2.3:a:ibm:cics_transaction_gateway:9.3:*:*:*:*:*:*:*
References
  • (MISC) https://www.ibm.com/support/pages/node/7105094 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/270259 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/270259 - VDB Entry, Vendor Advisory
References () https://https://www.ibm.com/support/pages/node/7105094 - () https://https://www.ibm.com/support/pages/node/7105094 - Broken Link

08 Jan 2024, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-08 03:15

Updated : 2024-09-27 14:15


NVD link : CVE-2023-47140

Mitre link : CVE-2023-47140

CVE.ORG link : CVE-2023-47140


JSON object : View

Products Affected

ibm

  • cics_transaction_gateway
CWE
CWE-266

Incorrect Privilege Assignment

NVD-CWE-Other