CVE-2024-41768

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jan 4, 2025
CWE ID 544

Summary

CVE-2024-41768 is a vulnerability affecting IBM Engineering Lifecycle Optimization - Publishing versions 7.0.2 and 7.0.3. This issue permits a remote attacker to induce an unhandled SSL exception, which in turn leaves the connection in an unforeseen and potentially insecure condition. The SSL exception could be triggered through unspecified means, and successful exploitation could compromise the confidentiality and integrity of sensitive data transmitted over the affected connection. IBM recommends users to apply the available patch as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share