First published: Mon Feb 03 2025(Updated: )
IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned. This information could be used in further attacks against the system.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Access Appliance and Container | >=10.0.0<=10.0.8 | |
IBM Security Verify Access Appliance and Container | <=10.0.0 - 10.0.8 | |
IBM Security Verify Access Container | <=10.0.0 - 10.0.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-45659 has been rated as a medium severity vulnerability.
To mitigate CVE-2024-45659, upgrade IBM Security Verify Access Appliance and Container to version 10.0.9 or later.
CVE-2024-45659 could be exploited by remote attackers to gather sensitive information through detailed technical error messages.
CVE-2024-45659 affects IBM Security Verify Access Appliance and Container version 10.0.0 through 10.0.8.
Yes, the sensitive information exposed by CVE-2024-45659 could potentially be used in subsequent attacks against the affected system.