Multiple vulnerabilities in IBM Spectrum Protect Plus File Systems Agent



Published: 2023-09-19
Risk Medium
Patch available YES
Number of vulnerabilities 4
CVE-ID CVE-2023-37920
CVE-2023-38325
CVE-2023-32681
CVE-2023-28370
CWE-ID CWE-345
CWE-295
CWE-200
CWE-601
Exploitation vector Network
Public exploit N/A
Vulnerable software
Subscribe
IBM Spectrum Protect Plus
Server applications / Other server solutions

Vendor IBM Corporation

Security Bulletin

This security bulletin contains information about 4 vulnerabilities.

1) Insufficient verification of data authenticity

EUVDB-ID: #VU79296

Risk: Medium

CVSSv3.1:

CVE-ID: CVE-2023-37920

CWE-ID:

Exploit availability:

Description

The vulnerability allows a remote attacker to perform MitM attack.

The vulnerability exist due to software recognizes "e-Tugra" root certificates, which were subject to an investigation prompted by reporting of security issues in their systems. An attacker with ability to generate certificates signed with the  compromised "e-Tugra" root certificate can perform MitM attack.

Mitigation

Install update from vendor's website.

Vulnerable software versions

IBM Spectrum Protect Plus: before 10.1.15.2

Fixed software versions

CPE2.3 External links

http://www.ibm.com/support/pages/node/7031489


Q & A

Can this vulnerability be exploited remotely?

Is there known malware, which exploits this vulnerability?

2) Improper certificate validation

EUVDB-ID: #VU79490

Risk: Medium

CVSSv3.1:

CVE-ID: CVE-2023-38325

CWE-ID:

Exploit availability:

Description

The vulnerability allows a remote attacker to perform MitM attack.

The vulnerability exists due to improper certificate validation when handling SSH certificates that have critical options. A remote attacker can perform MitM attack.

Mitigation

Install update from vendor's website.

Vulnerable software versions

IBM Spectrum Protect Plus: before 10.1.15.2

Fixed software versions

CPE2.3 External links

http://www.ibm.com/support/pages/node/7031489


Q & A

Can this vulnerability be exploited remotely?

Is there known malware, which exploits this vulnerability?

3) Information disclosure

EUVDB-ID: #VU77164

Risk: Medium

CVSSv3.1:

CVE-ID: CVE-2023-32681

CWE-ID:

Exploit availability:

Description

The vulnerability allows a remote attacker to gain access to potentially sensitive information.

The vulnerability exists due to requests has been leaking Proxy-Authorization headers to destination servers when redirected to an HTTPS endpoint. A remote attacker can gain unauthorized access to sensitive information on the system.

Mitigation

Install update from vendor's website.

Vulnerable software versions

IBM Spectrum Protect Plus: before 10.1.15.2

Fixed software versions

CPE2.3 External links

http://www.ibm.com/support/pages/node/7031489


Q & A

Can this vulnerability be exploited remotely?

Is there known malware, which exploits this vulnerability?

4) Open redirect

EUVDB-ID: #VU76397

Risk: Medium

CVSSv3.1:

CVE-ID: CVE-2023-28370

CWE-ID:

Exploit availability:

Description

The vulnerability allows a remote attacker to redirect victims to arbitrary URL.

The vulnerability exists due to improper sanitization of user-supplied data. A remote attacker can create a link that leads to a trusted website, however, when clicked, redirects the victim to arbitrary domain.

Successful exploitation of this vulnerability may allow a remote attacker to perform a phishing attack and steal potentially sensitive information.

Mitigation

Install update from vendor's website.

Vulnerable software versions

IBM Spectrum Protect Plus: before 10.1.15.2

Fixed software versions

CPE2.3 External links

http://www.ibm.com/support/pages/node/7031489


Q & A

Can this vulnerability be exploited remotely?

Is there known malware, which exploits this vulnerability?



###SIDEBAR###