CVE-2023-39379 - CVE House
Back to Database
Status published Unknown CVE-2023-39379

Fujitsu Software Infrastructure Manager (ISM) stores sensitive information at the...

Vulnerability Description

Fujitsu Software Infrastructure Manager (ISM) stores sensitive information at the product's maintenance data (ismsnap) in cleartext form. As a result, the password for the proxy server that is configured in ISM may be retrieved. Affected products and versions are as follows: Fujitsu Software Infrastructure Manager Advanced Edition V2.8.0.060, Fujitsu Software Infrastructure Manager Advanced Edition for PRIMEFLEX V2.8.0.060, and Fujitsu Software Infrastructure Manager Essential Edition V2.8.0.060.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-39379

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Fujitsu Limited

View all reports →

Affected Software

Fujitsu Software Infrastructure Manager Advanced Edition, Fujitsu Software Infrastructure Manager Advanced Edition for PRIMEFLEX, Fujitsu Software Infrastructure Manager Essential Edition
Vulnerable Versions:
V2.8.0.060

Timeline

Official Publish: August 4th, 2023
Last Modified: October 21st, 2024
Added to House: July 22nd, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.