Unix

IBM AIX 7.2 — CVE-2023-47707 — xss — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2023-47707 — xss — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 22 June 2023 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2023-47707, IBM Support Bulletin CVE: CVE-2023-47707 NVD summary: IBM Security Guardium Key Lifecycle Manager 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web […]

Read more
IBM AIX 7.3 — CVE-2022-25256 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.3

IBM AIX 7.3 — CVE-2022-25256 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 20 June 2023 Affected versions: IBM AIX 7.3 📖 ~4 min read  •  Source: NVD CVE-2022-25256, IBM PSIRT advisory page CVE: CVE-2022-25256 NVD summary: SAS Web Report Studio 4.4 allows XSS. /SASWebReportStudio/logonAndRender.do has two parameters: saspfs_request_backlabel_list and saspfs_request_backurl_list. The first one affects the content of the button […]

Read more
CHAT