Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54645 | IBM Application Gateway 19.12 through 24.09 could allow a local privileged user to perform unauthorized actions due to incorrect permissions assignment. |
Solution
IBM strongly recommends that customers update to the latest versions of software. The IBM Verify Identity Access version 24.12.0 fixes these vulnerabilities and can be downloaded with instruction contained in IBM Application Gateway Containers
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7235378 |
|
Tue, 12 Aug 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ibm:application_gateway:*:*:*:*:*:*:*:* |
Tue, 03 Jun 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 03 Jun 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Application Gateway 19.12 through 24.09 could allow a local privileged user to perform unauthorized actions due to incorrect permissions assignment. | |
| Title | IBM Application Gateway incorrect permission assignment | |
| First Time appeared |
Ibm
Ibm application Gateway |
|
| Weaknesses | CWE-732 | |
| CPEs | cpe:2.3:a:ibm:application_gateway:19.12:*:*:*:*:*:*:* cpe:2.3:a:ibm:application_gateway:24.09:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm application Gateway |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-08-24T11:59:21.665Z
Reserved: 2024-09-03T13:50:26.296Z
Link: CVE-2024-45655
Updated: 2025-06-03T14:56:36.812Z
Status : Analyzed
Published: 2025-06-03T15:15:58.093
Modified: 2025-08-12T20:06:38.977
Link: CVE-2024-45655
No data.
OpenCVE Enrichment
No data.
EUVD