cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-38370,https://securityvulnerability.io/vulnerability/CVE-2023-38370,IBM Security Access Manager Vulnerability Allows Malicious Package Installation,"The vulnerability presents a significant risk within IBM Security Access Manager Docker across multiple versions. Under specific configurations, it allows unauthorized users on the network to potentially install malicious packages, leading to a compromise of the system's security and integrity. This vulnerability underscores the critical importance of secure configuration management in preventing unauthorized access and ensuring the safety of sensitive data within organizational networks.",IBM,Security Access Manager Docker,6.5,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2024-06-27T18:27:20.082Z,0 CVE-2023-38368,https://securityvulnerability.io/vulnerability/CVE-2023-38368,IBM Security Access Manager Vulnerability Could Leak Sensitive Information,"IBM Security Access Manager, particularly versions 10.0.0.0 through 10.0.7.1, is susceptible to vulnerabilities that expose sensitive information to local users. This flaw arises from inadequate permission controls, potentially allowing unauthorized access to critical data within the system. Organizations utilizing these versions should review their security measures and apply necessary updates to mitigate risks associated with this vulnerability.",IBM,Security Access Manager Docker,5.5,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-06-27T18:25:39.896Z,0 CVE-2023-30997,https://securityvulnerability.io/vulnerability/CVE-2023-30997,IBM Security Access Manager Vulnerability Allows Root Access,"A vulnerability in IBM Security Access Manager Docker versions 10.0.0.0 to 10.0.7.1 may allow a local user to gain unauthorized root access due to improperly configured access controls. This issue can expose sensitive data and compromise system integrity, necessitating immediate attention from administrators to mitigate potential risks associated with this vulnerability.",IBM,Security Access Manager Docker,7.8,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-06-27T18:21:12.373Z,0 CVE-2023-30998,https://securityvulnerability.io/vulnerability/CVE-2023-30998,IBM Security Access Manager Vulnerability Allows Root Access,"The vulnerability in IBM Security Access Manager Docker allows a local user to bypass security measures due to improper access controls. The flaw affects versions from 10.0.0.0 to 10.0.7.1, enabling unauthorized individuals to gain root access, compromising the security and integrity of the affected system. This vulnerability is documented under IBM X-Force ID 254649, highlighting the significance of addressing it to maintain robust security practices.",IBM,Security Access Manager Docker,7.8,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-06-27T18:18:22.101Z,0 CVE-2023-38371,https://securityvulnerability.io/vulnerability/CVE-2023-38371,Weaker Cryptographic Algorithms in IBM Security Access Manager Docker Releases Could Lead to Information Decryption,"IBM Security Access Manager Docker versions 10.0.0.0 through 10.0.7.1 exhibit vulnerabilities due to the implementation of cryptographic algorithms that do not meet expected security standards. This weakness may allow attackers to decrypt highly sensitive information, posing significant risks to data confidentiality. Organizations utilizing these affected versions should review their security configurations and consider updates or mitigations to safeguard sensitive data against potential unauthorized access.",IBM,Security Access Manager Docker,7.5,HIGH,0.0007600000244565308,false,,false,false,false,,,false,false,,2024-06-27T18:14:20.985Z,0 CVE-2021-20439,https://securityvulnerability.io/vulnerability/CVE-2021-20439,,IBM Security Access Manager 9.0 and IBM Security Verify Access Docker 10.0.0 stores user credentials in plain clear text which can be read by an unauthorized user.,IBM,"Security Verify Access Docker,Security Access Manager",7.5,HIGH,0.0010100000072270632,false,,false,false,false,,,false,false,,2021-07-15T16:15:00.000Z,0