IBM Security Verify Access 10.0 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force ID: 252186.
References
Link Resource
https://exchange.xforce.ibmcloud.com/vulnerabilities/252186 VDB Entry Vendor Advisory
https://www.ibm.com/support/pages/node/7012613 Mitigation Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: ibm

Published: 2023-07-19T00:42:26.332Z

Updated: 2023-07-19T00:42:26.332Z

Reserved: 2023-04-08T15:56:20.543Z


Link: CVE-2023-30433

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-07-19T01:15:09.833

Modified: 2023-07-28T13:57:03.003


Link: CVE-2023-30433

JSON object: View

cve-icon Redhat Information

No data.

CWE