CVE-2024-45655: IBM Application Gateway incorrect permission assignment
IBM Application Gateway 19.12 through 24.09 could allow a local privileged user to perform unauthorized actions due to incorrect permissions assignment.
Other sources
IBM Application Gateway could allow a local privileged user to perform unauthorized actions due to incorrect permissions assignment.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-45655?
CVE-2024-45655 is classified as a high severity vulnerability due to the potential for unauthorized actions by local privileged users.
How do I fix CVE-2024-45655?
To remediate CVE-2024-45655, ensure that proper permissions are assigned to limit access to authorized users only.
What versions of IBM Application Gateway are affected by CVE-2024-45655?
CVE-2024-45655 affects IBM Application Gateway versions 19.12 through 24.09 inclusive.
Who is impacted by CVE-2024-45655?
Local privileged users on affected versions of IBM Application Gateway are impacted by CVE-2024-45655.
What actions can unauthorized users perform due to CVE-2024-45655?
Due to CVE-2024-45655, unauthorized actions could include potentially harmful modifications or access to sensitive information.