Unix

IBM AIX 7.1 — CVE-2023-23475 — xss — patch and remediation guide — diagnosis and fix on IBM AIX 7.1

IBM AIX 7.1 — CVE-2023-23475 — xss — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 18 July 2023 Affected versions: IBM AIX 7.1 📖 ~4 min read  •  Source: NVD CVE-2023-23475, IBM Support Bulletin CVE: CVE-2023-23475 NVD summary: IBM Infosphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus […]

Read more
IBM AIX 7.3 — CVE-2022-43917 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.3

IBM AIX 7.3 — CVE-2022-43917 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 17 July 2023 Affected versions: IBM AIX 7.3 📖 ~4 min read  •  Source: NVD CVE-2022-43917, IBM Support Bulletin CVE: CVE-2022-43917 NVD summary: IBM WebSphere Application Server 8.5 and 9.0 traditional container uses weaker than expected cryptographic keys that could allow an attacker to decrypt sensitive information. […]

Read more
IBM AIX 7.1 — CVE-2023-42029 — xss — patch and remediation guide — diagnosis and fix on IBM AIX 7.1

IBM AIX 7.1 — CVE-2023-42029 — xss — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 11 July 2023 Affected versions: IBM AIX 7.1 📖 ~4 min read  •  Source: NVD CVE-2023-42029, IBM Support Bulletin CVE: CVE-2023-42029 NVD summary: IBM CICS TX Standard 11.1, Advanced 10.1, 11.1, and TXSeries for Multiplatforms 8.1, 8.2, 9.1 are vulnerable to cross-site scripting. This vulnerability allows users […]

Read more
IBM AIX 7.3 — CVE-2022-22425 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.3

IBM AIX 7.3 — CVE-2022-22425 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 11 July 2023 Affected versions: IBM AIX 7.3 📖 ~4 min read  •  Source: NVD CVE-2022-22425, IBM Support Bulletin CVE: CVE-2022-22425 NVD summary: "IBM InfoSphere Information Server 11.7 is potentially vulnerable to CSV Injection. A remote attacker could execute arbitrary commands on the system, caused by improper […]

Read more
CHAT