CVE-2024-35114
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Jan 25, 2025
CWE ID 204
Summary
CVE-2024-35114 is a vulnerability affecting IBM Control Center versions 6.2.1 and 6.3.1. A remote attacker can exploit this issue by observing discrepancies in login attempts, enabling them to enumerate usernames. This vulnerability poses a significant security risk, allowing potential unauthorized access to the affected system. IBM strongly advises users to update their software to the latest version as soon as possible to mitigate this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- IBM Sterling Control Center
Affected Vendors
- IBM Corporation