CVE-2024-45670

IBM Security SOAR 51.0.1.0 and earlier contains a mechanism for users to recover or change their passwords without knowing the original password, but the user account must be compromised prior to the weak recovery mechanism.
References
Link Resource
https://www.ibm.com/support/pages/node/7172206 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:soar:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-11-14 12:15

Updated : 2024-11-16 00:24


NVD link : CVE-2024-45670

Mitre link : CVE-2024-45670

CVE.ORG link : CVE-2024-45670


JSON object : View

Products Affected

ibm

  • soar
CWE
CWE-640

Weak Password Recovery Mechanism for Forgotten Password