First published: Wed Nov 27 2024(Updated: )
IBM Analytics Content Hub 2.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Analytics Content Hub | ||
IBM Analytics Content Hub | <=2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-35134 is rated as a medium severity vulnerability due to the potential to expose sensitive information.
To mitigate CVE-2024-35134, ensure that detailed error messages are not returned to users and review access controls.
CVE-2024-35134 affects IBM Analytics Content Hub version 2.0 and earlier.
CVE-2024-35134 may allow remote attackers to gather sensitive information for use in further attacks.
Monitor your logs for unusual access patterns or error messages that could indicate attempts to exploit CVE-2024-35134.