CVE-2024-31878

I

BM i 7.2, 7.3, 7.4, and 7.5 Service Tools Server (SST) is vulnerable to SST user enumeration by a remote attacker. This vulnerability can be used by a malicious actor to gather information about SST users that can be targeted in further attacks. IBM X-Force ID: 287538.

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:ibm:i:7.2:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.3:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.4:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.5:*:*:*:*:*:*:*

History

21 Nov 2024, 09:14

Type Values Removed Values Added
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/287538 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/287538 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/7156725 - Vendor Advisory () https://www.ibm.com/support/pages/node/7156725 - Vendor Advisory

11 Jun 2024, 18:23

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-07 14:15

Updated : 2024-11-21 09:14


NVD link : CVE-2024-31878

Mitre link : CVE-2024-31878

CVE.ORG link : CVE-2024-31878


JSON object : View

Products Affected

ibm

CWE
CWE-203

Observable Discrepancy