CVE-2023-30441
Published Apr 29, 2023
Last updated 2 years ago
Overview
- Description
- IBM Runtime Environment, Java Technology Edition IBMJCEPlus and JSSE 8.0.7.0 through 8.0.7.11 components could expose sensitive information using a combination of flaws and configurations. IBM X-Force ID: 253188.
- Source
- psirt@us.ibm.com
- NVD status
- Analyzed
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 7.5
- Impact score
- 3.6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Severity
- HIGH
Weaknesses
- nvd@nist.gov
- NVD-CWE-noinfo
- psirt@us.ibm.com
- CWE-327
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:infosphere_information_server:11.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4CED2F00-89E3-4BA9-A8FB-D43B308A59A8" }, { "criteria": "cpe:2.3:a:ibm:java:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4B6E494E-BA83-4743-B9DD-4DE1F3BC0637", "versionEndExcluding": "8.0.7.15", "versionStartIncluding": "8.0.7.0" }, { "criteria": "cpe:2.3:a:ibm:websphere_application_server:*:*:*:*:-:*:*:*", "vulnerable": true, "matchCriteriaId": "E06F1A60-BE9C-4922-A4A6-E4E1EF57A06D", "versionEndExcluding": "8.5.5.23", "versionStartIncluding": "8.5.0.0" }, { "criteria": "cpe:2.3:a:ibm:websphere_application_server:-:*:*:*:liberty:*:*:*", "vulnerable": true, "matchCriteriaId": "7E0B3D5C-C912-4874-AD3D-62B6E6EBE742" }, { "criteria": "cpe:2.3:a:ibm:websphere_application_server:9.0.0.0:*:*:*:-:*:*:*", "vulnerable": true, "matchCriteriaId": "E79B1229-6DC0-4461-B814-1F671AE0A090" }, { "criteria": "cpe:2.3:a:ibm:z\\/transaction_processing_facility:1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D3BF7682-2984-4286-9C17-2B650A4275E7" } ], "operator": "OR" } ] } ]