CVE-2023-50306: IBM Common Licensing information disclosure
IBM Common Licensing 9.0 could allow a local user to enumerate usernames due to an observable response discrepancy. IBM X-Force ID: 273337.
Other sources
IBM Common Licensing could allow a local user to enumerate usernames due to an observable response discrepancy.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-50306?
CVE-2023-50306 has a medium severity level due to its potential for local user username enumeration.
How do I fix CVE-2023-50306?
To fix CVE-2023-50306, update IBM® Engineering Requirements Management DOORS and IBM® Engineering Requirements Management DOORS Web Access to the latest version.
Who is affected by CVE-2023-50306?
CVE-2023-50306 affects local users of IBM® Engineering Requirements Management DOORS and IBM® Engineering Requirements Management DOORS Web Access versions up to 9.7.2.7.
What type of vulnerability is CVE-2023-50306?
CVE-2023-50306 is a vulnerability that allows local users to enumerate usernames due to an observable response discrepancy.
When was CVE-2023-50306 disclosed?
CVE-2023-50306 was disclosed in 2023 as part of IBM's security updates.