Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-25681


LDAP users on IBM Spectrum Virtualize 8.5 which are configured to require multifactor authentication can still authenticate to the CIM interface using only username and password. This does not affect local users with MFA configured or remote users authenticating via single sign-on. IBM X-Force ID: 247033.


Published

2024-03-05T20:16:00.857

Last Modified

2025-03-04T14:22:30.143

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-308

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm spectrum_virtualize 8.5.0.0 Yes

References