IBM OpenPages 9.0 could allow an authenticated user to obtain sensitive information such as configurations that should only be available to privileged users.
History

Thu, 09 Jan 2025 15:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-276
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 09 Jan 2025 14:15:00 +0000

Type Values Removed Values Added
Description IBM OpenPages 9.0 could allow an authenticated user to obtain sensitive information such as configurations that should only be available to privileged users.
Title IBM OpenPages information disclosure
First Time appeared Ibm
Ibm openpages
Weaknesses CWE-282
CPEs cpe:2.3:a:ibm:openpages:9.0:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm openpages
References
Metrics cvssV3_1

{'score': 5.4, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2025-01-09T14:03:37.176Z

Updated: 2025-01-09T14:28:24.124Z

Reserved: 2024-08-07T13:29:17.952Z

Link: CVE-2024-43176

cve-icon Vulnrichment

Updated: 2025-01-09T14:27:48.585Z

cve-icon NVD

Status : Received

Published: 2025-01-09T14:15:26.770

Modified: 2025-01-09T15:15:15.737

Link: CVE-2024-43176

cve-icon Redhat

No data.