CVE-2023-27291
IBM Watson CP4D Data Stores information disclosure
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.5EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
03 Mar 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM Watson CP4D Data Stores 4.6.0, 4.6.1, 4.6.2, and 4.6.3 does not encrypt sensitive or critical information before storage or transmission which could allow an attacker to obtain sensitive information. IBM X-Force ID: 248740.
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N
Affected products
IBM · Watson CP4D Data StoresWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →