First published: Thu Jan 02 2025(Updated: )
IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Jazz Foundation | <=7.1.0 | |
IBM Jazz Foundation | <=7.0.3 | |
IBM Jazz Foundation | <=7.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-5591 has been classified as a medium severity vulnerability due to potential information disclosure.
To fix CVE-2024-5591, you should apply the security patches provided by IBM for the affected versions of Jazz Foundation.
CVE-2024-5591 affects IBM Jazz Foundation versions 7.0.2, 7.0.3, and 7.1.0.
CVE-2024-5591 can lead to the disclosure of sensitive information through detailed technical error messages returned in the browser.
Yes, CVE-2024-5591 can be exploited by remote attackers to obtain sensitive information.