CVE-2024-45075

IBM webMethods Integration 10.15 could allow an authenticated user to create scheduler tasks that would allow them to escalate their privileges to administrator due to missing authentication.
References
Link Resource
https://www.ibm.com/support/pages/node/7167245 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:webmethods_integration:10.15:*:*:*:*:*:*:*

History

06 Sep 2024, 16:45

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:webmethods_integration:10.15:*:*:*:*:*:*:*
First Time Ibm
Ibm webmethods Integration
CWE CWE-308 NVD-CWE-Other
References () https://www.ibm.com/support/pages/node/7167245 - () https://www.ibm.com/support/pages/node/7167245 - Vendor Advisory

04 Sep 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-04 16:15

Updated : 2024-09-06 16:45


NVD link : CVE-2024-45075

Mitre link : CVE-2024-45075


JSON object : View

Products Affected

ibm

  • webmethods_integration