cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-40694,https://securityvulnerability.io/vulnerability/CVE-2023-40694,Log File Vulnerability Could Allow Local User Access to Sensitive Information,"The IBM Watson CP4D Data Stores from version 4.0.0 to 4.8.4 exhibit a vulnerability where potentially sensitive data is stored in log files. This issue presents a risk as local users could easily access these logs, leading to unauthorized data disclosure. Safeguarding log files and ensuring proper access controls are essential to mitigate this susceptibility. Organizations utilizing impacted versions must take immediate action to enhance their security posture and protect sensitive information.",IBM,Watson Cp4d Data Stores,6.2,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-05-07T21:09:08.715Z,0 CVE-2023-26282,https://securityvulnerability.io/vulnerability/CVE-2023-26282,Data Modification Vulnerability in Watson CP4D Data Stores,IBM Watson CP4D Data Stores versions 4.6.0 through 4.6.3 are susceptible to a vulnerability that allows users with physical access and specific knowledge of the system to alter files or data. This could lead to unauthorized changes that compromise the integrity of the system and potentially expose sensitive information. System administrators are advised to assess their environments and apply best practices to mitigate risks associated with this vulnerability.,IBM,Watson Cp4d Data Stores,4.2,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-03-05T19:31:33.593Z,0 CVE-2023-28512,https://securityvulnerability.io/vulnerability/CVE-2023-28512,Data Manipulation Vulnerability in Watson CP4D Data Stores,"IBM Watson CP4D Data Stores versions 4.6.0, 4.6.1, and 4.6.2 are prone to a vulnerability that could allow malicious actors, who possess specific insights about the system, to manipulate data. This issue stems from improper input validation, enabling unauthorized data alteration. Users and administrators of these affected versions should assess their systems and implement necessary measures to mitigate the risks associated with this vulnerability. For more information and guidance, reference IBM's official advisory.",IBM,Watson Cp4d Data Stores,5.9,MEDIUM,0.0006500000017695129,false,,false,false,false,,,false,false,,2024-03-03T15:44:29.358Z,0 CVE-2023-27291,https://securityvulnerability.io/vulnerability/CVE-2023-27291,IBM Watson CP4D Data Stores Vulnerability: Sensitive Information at Risk,"IBM Watson CP4D Data Stores versions 4.6.0 through 4.6.3 lack proper encryption mechanisms for storing and transmitting sensitive or critical information. This vulnerability exposes data to potential interception by unauthorized parties, thereby compromising the confidentiality of critical business information. Organizations using these versions must implement additional security measures to safeguard sensitive data from unauthorized access.",IBM,Watson Cp4d Data Stores,7.5,HIGH,0.0008699999889358878,false,,false,false,false,,,false,false,,2024-03-03T15:39:55.755Z,0 CVE-2023-27540,https://securityvulnerability.io/vulnerability/CVE-2023-27540,IBM Watson CP4D Data Stores denial of service,IBM Watson CP4D Data Stores 4.6.0 does not properly allocate resources without limits or throttling which could allow a remote attacker with information specific to the system to cause a denial of service. IBM X-Force ID: 248924.,IBM,Watson Cp4d Data Stores,5.9,MEDIUM,0.0008999999845400453,false,,false,false,false,,,false,false,,2023-07-10T00:22:35.465Z,0