First published: Tue Nov 19 2024(Updated: )
IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to perform unauthorized actions that should be reserved to administrator used due to improper access controls.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Concert Software | <=1.0.0, 1.0.1, 1.0.2, 1.0.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-52359 has a moderate severity rating due to improper access controls allowing authenticated users to perform unauthorized actions.
To fix CVE-2024-52359, update IBM Concert Software to a patched version that is not affected by this vulnerability.
CVE-2024-52359 affects IBM Concert Software versions 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1.
Businesses using the affected versions of IBM Concert Software are at risk of unauthorized actions being performed by authenticated users.
CVE-2024-52359 is an access control vulnerability that can lead to unauthorized actions by authenticated users.