Vulnerability updated a month ago (2024-11-29T14:11:08.902Z)
Download STIX
Preview STIX
CVE-2023-28528 is a vulnerability that has been identified in AIX's invscout setUID binary. This flaw could potentially allow an attacker to gain remote code execution privileges on the affected system. The vulnerability exists due to the improper handling of user-supplied input within the invscout binary, which allows an attacker to pass malicious input and execute arbitrary code.
The vulnerability was identified by Talos Intelligence and assigned the identifier TALOS-2023-1691. It was disclosed publicly on June 8th, 2023, after being responsibly reported to the vendor. At the time of disclosure, there were no known public exploits or attacks utilizing this vulnerability.
AIX, the operating system where the vulnerability exists, has already released a patch for this issue. System administrators are advised to update their systems as soon as possible to ensure they are protected from potential exploitation of this vulnerability. In addition, it is recommended to review security controls and network segmentation to minimize the impact of any potential future attacks.
Description last updated: 2023-06-13T21:42:46.308Z
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Source Document References
Information about the CVE-2023-28528 Vulnerability was read from the documents corpus below. This display is limited to 20 results, create a free account to see more