ZeroHour

CVE-2024-38324

CVSS 3.1
6.5 medium
EPSS
<1%p28
Published
()
Modified
Description

IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI does not validate server name during registration and unregistration operations which could expose sensitive information to an attacker with access to the system.

Vendors
ibm
Products
storage defender
Weakness
CWE-297, CWE-295
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.