First published: Mon Feb 03 2025(Updated: )
IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned. This information could be used in further attacks against the system.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Access | <=10.0.0 - 10.0.8 | |
IBM Security Verify Access | <=10.0.0 - 10.0.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-45658 has been classified with a medium severity level due to the potential exposure of sensitive information.
To mitigate CVE-2024-45658, upgrade IBM Security Verify Access Appliance and Container to version 10.0.9 or later.
CVE-2024-45658 could expose sensitive information through detailed technical error messages.
CVE-2024-45658 affects users of IBM Security Verify Access Appliance and Container versions 10.0.0 through 10.0.8.
Yes, CVE-2024-45658 can be exploited by a remote attacker if detailed technical error messages are disclosed.