Description
IBM Engineering Requirements Management DOORS Next 7.0.2 and 7.0.3 could allow a remote attacker to bypass security restrictions, caused by a race condition. By sending a specially crafted request, an attacker could exploit this vulnerability to remotely execute code.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-38907 | IBM Engineering Requirements Management DOORS Next 7.0.2 and 7.0.3 could allow a remote attacker to bypass security restrictions, caused by a race condition. By sending a specially crafted request, an attacker could exploit this vulnerability to remotely execute code. |
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7180636 |
|
History
Wed, 20 Aug 2025 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm doors Next
|
|
| CPEs | cpe:2.3:a:ibm:doors_next:7.0.2:*:*:*:*:*:*:* cpe:2.3:a:ibm:doors_next:7.0.3:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm doors Next
|
Fri, 10 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 10 Jan 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Engineering Requirements Management DOORS Next 7.0.2 and 7.0.3 could allow a remote attacker to bypass security restrictions, caused by a race condition. By sending a specially crafted request, an attacker could exploit this vulnerability to remotely execute code. | |
| Title | IBM Engineering Requirements Management DOORS Next code execution | |
| First Time appeared |
Ibm
Ibm engineering Requirements Management Doors |
|
| Weaknesses | CWE-367 | |
| CPEs | cpe:2.3:a:ibm:engineering_requirements_management_doors:7.0.2:*:*:*:*:*:*:* cpe:2.3:a:ibm:engineering_requirements_management_doors:7.0.3:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm engineering Requirements Management Doors |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-01-10T14:48:26.216Z
Reserved: 2024-07-22T12:03:08.192Z
Link: CVE-2024-41787
Updated: 2025-01-10T14:48:20.812Z
Status : Analyzed
Published: 2025-01-10T14:15:28.947
Modified: 2025-08-20T02:48:45.547
Link: CVE-2024-41787
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD