IBM Watson Query on Cloud Pak for Data 1.8, 2.0, 2.1, 2.2 and IBM Db2 Big SQL on Cloud Pak for Data 7.3, 7.4, 7.5, and 7.6 could allow an authenticated user to obtain sensitive information due to insufficient session expiration.
History

Tue, 26 Nov 2024 19:30:00 +0000

Type Values Removed Values Added
First Time appeared Ibm watson Query With Cloud Pak For Data
CPEs cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data:1.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data:2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data:2.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data:2.2:*:*:*:*:*:*:*
Vendors & Products Ibm watson Query With Cloud Pak For Data

Sun, 24 Nov 2024 13:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sat, 23 Nov 2024 14:00:00 +0000

Type Values Removed Values Added
Description IBM Watson Query on Cloud Pak for Data 1.8, 2.0, 2.1, 2.2 and IBM Db2 Big SQL on Cloud Pak for Data 7.3, 7.4, 7.5, and 7.6 could allow an authenticated user to obtain sensitive information due to insufficient session expiration.
Title IBM Watson Query on Cloud Pak for Data and IBM Db2 Big SQL on Cloud Pak for Data information disclosure
First Time appeared Ibm
Ibm big Sql
Ibm watson Query With Cloud Pak For Data As A Service
Weaknesses CWE-613
CPEs cpe:2.3:a:ibm:big_sql:7.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:big_sql:7.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:big_sql:7.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:big_sql:7.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:1.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:2.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:2.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm big Sql
Ibm watson Query With Cloud Pak For Data As A Service
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2024-11-23T13:48:16.110Z

Updated: 2024-11-24T12:30:18.144Z

Reserved: 2024-05-09T16:27:47.448Z

Link: CVE-2024-35160

cve-icon Vulnrichment

Updated: 2024-11-24T12:30:14.575Z

cve-icon NVD

Status : Analyzed

Published: 2024-11-23T14:15:18.393

Modified: 2024-11-26T19:08:22.473

Link: CVE-2024-35160

cve-icon Redhat

No data.