CVE Published: 07/02/2024 |
CVE Updated: 22/08/2024 |
CVE Year: 2023 Source: ibm |
Vendor: IBM |
Product: Storage Virtualize Status : PUBLISHED
CVE-2023-47700 Description
IBM SAN Volume Controller, IBM Storwize, IBM FlashSystem and IBM Storage Virtualize 8.6 products could allow a remote attacker to spoof a trusted system that would not be correctly validated by the Storwize server. This could lead to a user connecting to a malicious host, believing that it was a trusted system and deceived into accepting spoofed data. IBM X-Force ID: 271016.
Metrics
CVSS Version: 3.1 |
Base Score: 5.9 MEDIUM Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N