CVE-2024-41779: IBM Engineering Systems Design Rhapsody - Model Manager
IBM Engineering Lifecycle Optimization - Publishing could allow a remote attacker to bypass security restrictions, caused by a race condition. By sending a specially crafted request, an attacker could exploit this vulnerability to remotely execute code.
Other sources
IBM Engineering Systems Design Rhapsody - Model Manager 7.0.2 and 7.0.3 could allow a remote attacker to bypass security restrictions, caused by a race condition. By sending a specially crafted request, an attacker could exploit this vulnerability to remotely execute code.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-41779?
CVE-2024-41779 is considered a high severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2024-41779?
To fix CVE-2024-41779, users should upgrade IBM DOORS Next to a version higher than 7.0.3.
Who is affected by CVE-2024-41779?
CVE-2024-41779 affects users of IBM DOORS Next versions up to and including 7.0.3.
What type of vulnerability is CVE-2024-41779?
CVE-2024-41779 is a remote code execution vulnerability caused by a race condition.
Can CVE-2024-41779 be exploited remotely?
Yes, CVE-2024-41779 can be exploited remotely by sending specially crafted requests.