{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"IBM Spectrum Copy Data Management versions 2.2.x.x ant\u00e9rieures \u00e0 2.2.21.0","product":{"name":"Spectrum","vendor":{"name":"IBM","scada":false}}}],"affected_systems_content":null,"content":"## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[{"name":"CVE-2023-1281","url":"https://www.cve.org/CVERecord?id=CVE-2023-1281"},{"name":"CVE-2023-34454","url":"https://www.cve.org/CVERecord?id=CVE-2023-34454"},{"name":"CVE-2023-34453","url":"https://www.cve.org/CVERecord?id=CVE-2023-34453"},{"name":"CVE-2022-4662","url":"https://www.cve.org/CVERecord?id=CVE-2022-4662"},{"name":"CVE-2023-22041","url":"https://www.cve.org/CVERecord?id=CVE-2023-22041"},{"name":"CVE-2023-2194","url":"https://www.cve.org/CVERecord?id=CVE-2023-2194"},{"name":"CVE-2023-22043","url":"https://www.cve.org/CVERecord?id=CVE-2023-22043"},{"name":"CVE-2023-22036","url":"https://www.cve.org/CVERecord?id=CVE-2023-22036"},{"name":"CVE-2023-34455","url":"https://www.cve.org/CVERecord?id=CVE-2023-34455"},{"name":"CVE-2023-29406","url":"https://www.cve.org/CVERecord?id=CVE-2023-29406"},{"name":"CVE-2023-22045","url":"https://www.cve.org/CVERecord?id=CVE-2023-22045"},{"name":"CVE-2023-22049","url":"https://www.cve.org/CVERecord?id=CVE-2023-22049"},{"name":"CVE-2023-38408","url":"https://www.cve.org/CVERecord?id=CVE-2023-38408"},{"name":"CVE-2023-1829","url":"https://www.cve.org/CVERecord?id=CVE-2023-1829"},{"name":"CVE-2023-22044","url":"https://www.cve.org/CVERecord?id=CVE-2023-22044"},{"name":"CVE-2023-22006","url":"https://www.cve.org/CVERecord?id=CVE-2023-22006"},{"name":"CVE-2023-29409","url":"https://www.cve.org/CVERecord?id=CVE-2023-29409"},{"name":"CVE-2023-2124","url":"https://www.cve.org/CVERecord?id=CVE-2023-2124"}],"links":[],"reference":"CERTFR-2023-AVI-0757","revisions":[{"description":"Version initiale","revision_date":"2023-09-18T00:00:00.000000"}],"risks":[{"description":"Ex\u00e9cution de code arbitraire \u00e0 distance"},{"description":"\u00c9l\u00e9vation de privil\u00e8ges"},{"description":"D\u00e9ni de service \u00e0 distance"},{"description":"Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"},{"description":"Atteinte \u00e0 l'int\u00e9grit\u00e9 des donn\u00e9es"},{"description":"Injection de code indirecte \u00e0 distance (XSS)"},{"description":"Non sp\u00e9cifi\u00e9 par l'\u00e9diteur"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans<span\nclass=\"textit\"> IBM Spectrum Copy Data Management</span>. Certaines\nd'entre elles permettent \u00e0 un attaquant de provoquer une atteinte \u00e0 la\nconfidentialit\u00e9 des donn\u00e9es, une ex\u00e9cution de code arbitraire \u00e0 distance\net une \u00e9l\u00e9vation de privil\u00e8ges.\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans IBM Spectrum Copy Data Management","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 IBM 7029381 du 15 septembre 2023","url":"https://www.ibm.com/support/pages/node/7029381"},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 IBM 7029387 du 15 septembre 2023","url":"https://www.ibm.com/support/pages/node/7029387"},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 IBM 7029389 du 15 septembre 2023","url":"https://www.ibm.com/support/pages/node/7029389"}]}
