IBM TXSeries for Multiplatforms 10.1 could allow an attacker to obtain sensitive information from the query string of an HTTP GET method to process a request which could be obtained using man in the middle techniques.
History

Thu, 14 Nov 2024 21:15:00 +0000

Type Values Removed Values Added
Weaknesses NVD-CWE-noinfo

Fri, 01 Nov 2024 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 01 Nov 2024 16:45:00 +0000

Type Values Removed Values Added
Description IBM TXSeries for Multiplatforms 10.1 could allow an attacker to obtain sensitive information from the query string of an HTTP GET method to process a request which could be obtained using man in the middle techniques.
Title IBM TXSeries for Multiplatforms information disclosure
First Time appeared Ibm
Ibm txseries For Multiplatforms
Weaknesses CWE-598
CPEs cpe:2.3:a:ibm:txseries_for_multiplatforms:10.1:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm txseries For Multiplatforms
References
Metrics cvssV3_1

{'score': 5.9, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2024-11-01T16:36:39.955Z

Updated: 2024-11-01T17:25:09.421Z

Reserved: 2024-07-22T12:02:18.443Z

Link: CVE-2024-41738

cve-icon Vulnrichment

Updated: 2024-11-01T17:25:06.671Z

cve-icon NVD

Status : Analyzed

Published: 2024-11-01T17:15:16.033

Modified: 2024-11-14T20:51:29.847

Link: CVE-2024-41738

cve-icon Redhat

No data.