CVE-2024-31899
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Sep 26, 2024
Updated: Jan 7, 2025
CWE ID 522
CWE ID 256
Summary
CVE-2024-31899 is a vulnerability affecting IBM Cognos Command Center versions 10.2.4.1 and 10.2.5. An authenticated user with physical access to the device can exploit this issue to disclose highly sensitive user information. This vulnerability poses a significant risk, as the exposure of such data can lead to identity theft, unauthorized system access, or other malicious activities. IBM recommends that affected users apply the available patch to mitigate this risk. Failure to do so may result in potential data breaches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- IBM Corporation