IBM Security Guardium Key Lifecycle Manager 4.3 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to view modify files on the system. IBM X-Force ID: 271196.
This Cyber News was published on www.tenable.com. Publication date: Wed, 20 Dec 2023 08:41:03 +0000