First published: Wed Feb 19 2025(Updated: )
IBM OpenPages application could allow an authenticated user to manipulate data in the Questionnaires application allowing the user to spoof other users' responses.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM OpenPages with Watson | >=8.3<=9.0 | |
IBM OpenPages with Watson | <=9.0 | |
IBM OpenPages with Watson | <=IBM OpenPages with Watson 8.3 | |
All of | ||
Any of | ||
IBM OpenPages with Watson | >=8.3<8.3.0.3 | |
IBM OpenPages with Watson | >=9.0<9.0.0.5 | |
Any of | ||
Linux Kernel | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43196 is considered a high severity vulnerability due to its potential to allow authenticated users to manipulate data.
To fix CVE-2024-43196, you should apply the latest patch provided by IBM for OpenPages version 9.0 or OpenPages with Watson version 8.3.
CVE-2024-43196 affects users of IBM OpenPages and IBM OpenPages with Watson applications up to versions 9.0 and 8.3 respectively.
CVE-2024-43196 enables authenticated users to spoof other users' responses within the Questionnaires application.
Yes, this vulnerability can only be exploited by authenticated users within the affected applications.