Cyber Resilience

CVE-2023-23487

Ibm Db2 11.1 … 11.5

Published
10 July 2023
Modified
21 November 2024
Patch / advisory
CVSS Score v3.1 4.3
Click a component to see what it means
Raw vectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
EPSS Score 0.0076 52th percentile
Risk Priority 35 floored blend · peak EPSS

Summary

CVE-2023-23487 is a medium-severity an unspecified weakness vulnerability in Ibm Db2. Its CVSS base score is 4.3 (Medium).

Operationally, ranked in the top 48% of CVEs by exploit likelihood; it is not currently listed in the CISA KEV catalog.

EU & UK References

Vulnerability Data

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to insufficient audit logging. IBM X-Force ID: 245918.

CWE(s)

Related Threats

CVEs Like This One

CVE-2023-30443Same product: Ibm Aix
CVE-2023-30431Same product: Ibm Aix
CVE-2023-27868Same product: Ibm Aix
CVE-2023-29256Same product: Ibm Aix
CVE-2023-30445Same product: Ibm Aix
CVE-2023-30447Same product: Ibm Aix
CVE-2023-30446Same product: Ibm Aix
CVE-2023-30448Same product: Ibm Aix
CVE-2023-30449Same product: Ibm Aix
CVE-2023-27869Same product: Ibm Aix

Affected Assets

ibm
db2
11.1, 11.5

Mitigating Controls

No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.

References