ZeroHour

CVE-2024-45670

CVSS 3.1
8.1 high
EPSS
<1%p26
Published
()
Modified
Description

IBM Security SOAR 51.0.1.0 and earlier contains a mechanism for users to recover or change their passwords without knowing the original password, but the user account must be compromised prior to the weak recovery mechanism.

Vendors
ibm
Products
soar
Weakness
CWE-640
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.