Unix

IBM AIX 7.3 — CVE-2023-50945 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.3

IBM AIX 7.3 — CVE-2023-50945 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 27 March 2024 Affected versions: IBM AIX 7.3 📖 ~4 min read  •  Source: NVD CVE-2023-50945, IBM Support Bulletin CVE: CVE-2023-50945 NVD summary: IBM Common Licensing 9.0 stores user credentials in plain clear text which can be read by a local user. References: www.ibm.com/support/pages/node/7161947 Table of contents […]

Read more
IBM AIX 7.2 — CVE-2024-54183 — xss — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2024-54183 — xss — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 27 March 2024 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2024-54183, IBM Support Bulletin CVE: CVE-2024-54183 NVD summary: IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 is vulnerable to cross-site scripting. This vulnerability allows […]

Read more
IBM AIX 7.1 — CVE-2023-47704 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.1

IBM AIX 7.1 — CVE-2023-47704 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 22 March 2024 Affected versions: IBM AIX 7.1 📖 ~4 min read  •  Source: NVD CVE-2023-47704, IBM Support Bulletin CVE: CVE-2023-47704 NVD summary: IBM Security Guardium Key Lifecycle Manager 4.3 contains plain text hard-coded credentials or other secrets in source code repository. IBM X-Force ID: 271220. References: […]

Read more
IBM AIX 7.2 — CVE-2024-41783 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2024-41783 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 22 March 2024 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2024-41783, IBM Support Bulletin CVE: CVE-2024-41783 NVD summary: IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow a privileged user to inject commands into the underlying operating system […]

Read more
CHAT