Security Advisory

CVE-2023-43052

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-07 16:55:51
Last updated 2025-08-16 23:43:09
Assigner ibm
State PUBLISHED

Description

IBM Control Center 6.2.1 through 6.3.1 is vulnerable to an external service interaction attack, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability to induce the application to perform server-side DNS lookups or HTTP requests to arbitrary domain names. By submitting suitable payloads, an attacker can cause the application server to attack other systems that it can interact with.