| Vulnerability Name: | CVE-2023-23470 (CCN-244510) | ||||||||||||
| Assigned: | 2023-05-02 | ||||||||||||
| Published: | 2023-05-02 | ||||||||||||
| Updated: | 2023-05-10 | ||||||||||||
| Summary: | |||||||||||||
| CVSS v3 Severity: | 6.4 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H) 5.6 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
5.6 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
| ||||||||||||
| CVSS v2 Severity: | 6.0 Medium (CCN CVSS v2 Vector: AV:L/AC:H/Au:S/C:C/I:C/A:C)
| ||||||||||||
| References: | Source: MITRE Type: CNA CVE-2023-23470 Source: psirt@us.ibm.com Type: VDB Entry, Vendor Advisory psirt@us.ibm.com Source: XF Type: UNKNOWN ibm-i-cve202323470-priv-esc(244510) Source: CCN Type: IBM Security Bulletin 6987767 (i) IBM i is vulnerable to an authenticated administrator gaining elevated privileges due to improper SQL processing. (CVE-2023-23470) Source: psirt@us.ibm.com Type: Vendor Advisory psirt@us.ibm.com | ||||||||||||
| Vulnerable Configuration: | Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
| BACK | |||||||||||||