Storing passwords in a recoverable format in IBM OpenPages with Watson - CVE-2023-38738
Published: January 19, 2024
IBM OpenPages with Watson
IBM Corporation
Description
The vulnerability allows a remote user to gain access to potentially sensitive information.
The vulnerability exists due to weaker than expected security in a OpenPages environment using Native authentication. A remote user with access to the OpenPages database could through a series of specially crafted steps exploit this weakness and gain unauthorized access to other OpenPages accounts.