An issue was discovered in Bravura Security Fabric versions 12.3.x before 12.3.5.32784, 12.4.x before 12.4.3.35110, 12.5.x before 12.5.2.35950, 12.6.x before 12.6.2.37183, and 12.7.x before 12.7.1.38241. An unauthenticated attacker can cause a resource leak by issuing multiple failed login attempts through API SOAP.
History

Fri, 20 Sep 2024 14:30:00 +0000

Type Values Removed Values Added
First Time appeared Hitachi
Hitachi id Bravura Security Fabric
Weaknesses CWE-307
CPEs cpe:2.3:a:hitachi:id_bravura_security_fabric:*:*:*:*:*:*:*:*
Vendors & Products Hitachi
Hitachi id Bravura Security Fabric
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}

cvssV3_1

{'score': 9.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 18 Sep 2024 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 18 Sep 2024 17:45:00 +0000

Type Values Removed Values Added
Description An issue was discovered in Bravura Security Fabric versions 12.3.x before 12.3.5.32784, 12.4.x before 12.4.3.35110, 12.5.x before 12.5.2.35950, 12.6.x before 12.6.2.37183, and 12.7.x before 12.7.1.38241. An unauthenticated attacker can cause a resource leak by issuing multiple failed login attempts through API SOAP.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-09-18T00:00:00

Updated: 2024-09-20T13:45:25.774Z

Reserved: 2024-09-01T00:00:00

Link: CVE-2024-45523

cve-icon Vulnrichment

Updated: 2024-09-18T18:50:34.195Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-09-18T18:15:06.420

Modified: 2024-09-20T14:35:11.523

Link: CVE-2024-45523

cve-icon Redhat

No data.