CVE-2024-38319: IBM Security SOAR code execution
IBM Security SOAR 51.0.2.0 could allow an authenticated user to execute malicious code loaded from a specially crafted script. IBM X-Force ID: 294830.
Other sources
IBM Security SOAR could allow an authenticated user to execute malicious code loaded from a specially crafted script.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-38319?
CVE-2024-38319 is considered a critical vulnerability as it allows authenticated users to execute malicious code.
How do I fix CVE-2024-38319?
To mitigate CVE-2024-38319, upgrade IBM Security SOAR to version 51.0.2.1 or later.
Who is affected by CVE-2024-38319?
CVE-2024-38319 affects users of IBM Security SOAR version 51.0.2.0 and earlier.
What type of attacks can CVE-2024-38319 enable?
CVE-2024-38319 can enable attackers to execute arbitrary code on affected installations through crafted scripts.
Is authentication required to exploit CVE-2024-38319?
Yes, CVE-2024-38319 requires an authenticated user to exploit the vulnerability and execute malicious code.