CVE-2023-33837 – IBM Security Verify Governance information disclosure
https://notcve.org/view.php?id=CVE-2023-33837
IBM Security Verify Governance 10.0 does not encrypt sensitive or critical information before storage or transmission. IBM X-Force ID: 256020. IBM Security Verify Governance 10.0 no cifra información confidencial o crítica antes del almacenamiento o la transmisión. ID de IBM X-Force: 256020. • https://exchange.xforce.ibmcloud.com/vulnerabilities/256020 https://www.ibm.com/support/pages/node/7057377 • CWE-311: Missing Encryption of Sensitive Data CWE-319: Cleartext Transmission of Sensitive Information •
CVE-2022-22466 – IBM Security Verify Governance information disclosure
https://notcve.org/view.php?id=CVE-2022-22466
IBM Security Verify Governance 10.0 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 225222. IBM Security Verify Governance 10.0 contiene credenciales codificadas, como una contraseña o clave criptográfica, que utiliza para su propia autenticación entrante, comunicación saliente con componentes externos o cifrado de datos internos. ID de IBM X-Force: 225222. • https://exchange.xforce.ibmcloud.com/vulnerabilities/225222 https://www.ibm.com/support/pages/node/7057377 • CWE-798: Use of Hard-coded Credentials •
CVE-2023-35685 – PowerVR Out-Of-Bounds Access / Information Leak
https://notcve.org/view.php?id=CVE-2023-35685
PowerVR suffers from a multitude of memory management bugs including out-of-bounds access and information leakage. •
CVE-2023-38276 – IBM Cognos Dashboards information disclosure
https://notcve.org/view.php?id=CVE-2023-38276
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 exposes sensitive information in environment variables which could aid in further attacks against the system. IBM X-Force ID: 260736. IBM Cognos Dashboards en Cloud Pak for Data 4.7.0 expone información confidencial en variables de entorno que podrían ayudar en futuros ataques contra el system. ID de IBM X-Force: 260736. • https://exchange.xforce.ibmcloud.com/vulnerabilities/260736 https://www.ibm.com/support/pages/node/7031207 • CWE-319: Cleartext Transmission of Sensitive Information •
CVE-2023-38275 – IBM Cognos Dashboards information disclosure
https://notcve.org/view.php?id=CVE-2023-38275
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 exposes sensitive information in container images which could lead to further attacks against the system. IBM X-Force ID: 260730. IBM Cognos Dashboards en Cloud Pak for Data 4.7.0 expone información confidencial en imágenes de contenedores que podrían provocar más ataques contra el system. ID de IBM X-Force: 260730. • https://exchange.xforce.ibmcloud.com/vulnerabilities/260735 https://www.ibm.com/support/pages/node/7031207 • CWE-319: Cleartext Transmission of Sensitive Information •