Medium severity5.4NVD Advisory· Published Mar 22, 2023· Updated Jun 17, 2026
CVE-2023-25924
CVE-2023-25924
Description
IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 could allow an authenticated user to perform actions that they should not have access to due to improper authorization. IBM X-Force ID: 247630.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:ibm:security_key_lifecycle_manager:3.0.1:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:ibm:security_key_lifecycle_manager:3.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:security_key_lifecycle_manager:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:security_key_lifecycle_manager:4.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:security_key_lifecycle_manager:4.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:security_key_lifecycle_manager:4.1:*:*:*:*:*:*:*
- (no CPE)range: <=4.1.1
- (no CPE)range: 3.0, 3.0.1, 4.0, 4.1 , 4.1.1
Patches
Vulnerability mechanics
References
2- www.ibm.com/support/pages/node/6962729nvdPatchVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/247630nvdVDB EntryVendor Advisory
News mentions
0No linked articles in our index yet.