First published: Wed Jan 17 2024(Updated: )
IBM App Connect Enterprise 11.0.0.1 through 11.0.0.24 and 12.0.1.0 through 12.0.11.0 could allow a remote attacker to obtain sensitive information or cause a denial of service due to improper restriction of excessive authentication attempts. IBM X-Force ID: 279143.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM App Connect | <=12.0.1.0 - 12.0.11.0 | |
IBM App Connect | <=11.0.0.1 - 11.0.0.24 | |
IBM App Connect | >=11.0.0.1<=11.0.0.24 | |
IBM App Connect | >=12.0.1.0<=12.0.11.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-22317 is categorized as a potential denial of service due to improper restriction of excessive authentication attempts.
To fix CVE-2024-22317, apply the latest patches available for IBM App Connect Enterprise version 11.0.0.24 or 12.0.11.0.
CVE-2024-22317 affects IBM App Connect Enterprise versions 11.0.0.1 to 11.0.0.24 and 12.0.1.0 to 12.0.11.0.
Yes, CVE-2024-22317 could allow a remote attacker to obtain sensitive information.
The IBM X-Force ID for CVE-2024-22317 is 279143.