CVE-2023-38272

IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.36 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, 2.3.4.0, and 2.3.4.1 could allow a user with access to the network to obtain sensitive information from CLI arguments.
References
Link Resource
https://www.ibm.com/support/pages/node/7229212 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:cloud_pak_system:2.3.1.1:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.0:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.3:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.3:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.4:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.5:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:ifix2:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.7:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.7:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.4.0:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.4.1:-:*:*:*:*:*:*

History

18 Aug 2025, 12:46

Type Values Removed Values Added
First Time Ibm cloud Pak System
Ibm
References () https://www.ibm.com/support/pages/node/7229212 - () https://www.ibm.com/support/pages/node/7229212 - Vendor Advisory
CPE cpe:2.3:a:ibm:cloud_pak_system:2.3.4.1:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.7:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.5:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.3:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.1.1:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:ifix2:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.4.0:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.3:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.6:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.7:ifix1:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.0:-:*:*:*:*:*:*
cpe:2.3:a:ibm:cloud_pak_system:2.3.3.4:-:*:*:*:*:*:*
Summary
  • (es) IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.36 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, 2.3.4.0 y 2.3.4.1 podrían permitir que un usuario con acceso a la red obtenga información confidencial de los argumentos de la CLI.

27 Mar 2025, 18:17

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-27 18:17

Updated : 2025-08-18 12:46


NVD link : CVE-2023-38272

Mitre link : CVE-2023-38272

CVE.ORG link : CVE-2023-38272


JSON object : View

Products Affected

ibm

  • cloud_pak_system
CWE
CWE-300

Channel Accessible by Non-Endpoint