First published: Thu Oct 31 2024(Updated: )
IBM TXSeries for Multiplatforms 10.1 could allow an attacker to obtain sensitive information from the query string of an HTTP GET method to process a request which could be obtained using man in the middle techniques.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM TXSeries for Multiplatforms | <=10.1 | |
IBM TXSeries for Multiplatforms | =10.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-41738 is considered moderate due to the potential exposure of sensitive information.
You can fix CVE-2024-41738 by applying the latest patch available for IBM TXSeries for Multiplatforms version 10.1.
CVE-2024-41738 is an information disclosure vulnerability that can be exploited to retrieve sensitive data from HTTP GET requests.
IBM TXSeries for Multiplatforms users on version 10.1 are affected by CVE-2024-41738.
Attackers can exploit CVE-2024-41738 to obtain sensitive information transmitted in the query string through man-in-the-middle attacks.