CVE-2024-41770: IBM Engineering Requirements Management DOORS Next information disclosure
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download temporary files which could expose application logic or other sensitive information.
Other sources
IBM Engineering Requirements Management DOORS Next could allow a remote attacker to download temporary files which could expose application logic or other sensitive information.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-41770?
CVE-2024-41770 has been classified as a medium-severity vulnerability, which could potentially expose sensitive information.
How do I fix CVE-2024-41770?
To remediate CVE-2024-41770, upgrade your IBM Engineering Requirements Management DOORS Next to version 7.1 or later.
What versions of IBM Engineering Requirements Management DOORS Next are affected by CVE-2024-41770?
CVE-2024-41770 affects IBM Engineering Requirements Management DOORS Next versions 7.0.2, 7.0.3, and 7.1.
What type of attack does CVE-2024-41770 enable?
CVE-2024-41770 allows a remote attacker to download temporary files, which may expose application logic or sensitive information.
Is there a risk of data leak with CVE-2024-41770?
Yes, CVE-2024-41770 poses a risk of data leak due to the potential exposure of sensitive temporary files.