Autore: Angelo Barbosa

CVE-2024-45653 | IBM Sterling Connect:Direct Web Services 6.0/6.1/6.2/6.3 insertion of sensitive information into sent data

A vulnerability classified as problematic was found in IBM Sterling Connect:Direct Web Services 6.0/6.1/6.2/6.3. Affected by this vulnerability is an unknown functionality. The manipulation leads to insertion of sensitive information into sent data. This vulnerability is known as CVE-2024-45653. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-45652 | IBM Maximo Asset Management 7.6.1.3 API path traversal

A vulnerability classified as critical has been found in IBM Maximo Asset Management 7.6.1.3. Affected is an unknown function of the component API. The manipulation leads to path traversal. This vulnerability is traded as CVE-2024-45652. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-49354 | IBM Concert Software 1.0.0/1.0.1/1.0.2 API Call exposure of sensitive information due to incompatible policies

A vulnerability was found in IBM Concert Software 1.0.0/1.0.1/1.0.2. It has been rated as problematic. This issue affects some unknown processing of the component API Call Handler. The manipulation leads to exposure of sensitive information due to incompatible policies. The identification of this vulnerability is CVE-2024-49354. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-51448 | IBM Robotic Process Automation up to 21.0.7.17/23.0.18 nssm.exe insecure inherited permissions

A vulnerability was found in IBM Robotic Process Automation up to 21.0.7.17/23.0.18. It has been declared as critical. This vulnerability affects unknown code of the file nssm.exe. The manipulation leads to insecure inherited permissions. This vulnerability was named CVE-2024-51448. It is possible to launch the attack on the local host. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-47106 | IBM Jazz for Service Management up to 1.1.3.22 file access

A vulnerability was found in IBM Jazz for Service Management up to 1.1.3.22. It has been classified as problematic. This affects an unknown part. The manipulation leads to files or directories accessible. This vulnerability is uniquely identified as CVE-2024-47106. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più