CVE-2023-32338: IBM Sterling Secure Proxy information disclosure
IBM Sterling Secure Proxy and IBM Sterling External Authentication Server 6.0.3 and 6.1.0 stores user credentials in plain clear text which can be read by a local user with container access. IBM X-Force ID: 255585.
Other sources
IBM Sterling Secure Proxy and IBM Sterling External Authentication Server stores user credentials in plain clear text which can be read by a local user with container access.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2023-32338.
What is the severity level of CVE-2023-32338?
The severity level of CVE-2023-32338 is medium with a CVSS score of 5.1.
What is the affected software of CVE-2023-32338?
The affected software of CVE-2023-32338 is IBM Sterling Secure Proxy and IBM Sterling External Authentication Server version 6.0.3 and 6.1.0.
How can I fix CVE-2023-32338?
To fix CVE-2023-32338, you need to apply the patch provided by IBM for the affected software versions.
Where can I find more information about CVE-2023-32338?
You can find more information about CVE-2023-32338 on the IBM X-Force ID page and the IBM support pages.