CVE-2024-41780
CVSS 3.1 Score 4.2 of 10 (medium)
Details
Published Jan 3, 2025
CWE ID 359
Summary
CVE-2024-41780 is a vulnerability affecting IBM Jazz Foundation versions 7.0.2, 7.0.3, and 7.1.0. This issue permits a physical user to access sensitive information due to an oversight in password masking during entry. The vulnerability could potentially allow unauthorized individuals to view passwords as they are typed, increasing the risk of account takeovers and data breaches. Users are urged to update their IBM Jazz Foundation installations to address this security weakness.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- IBM Jazz Foundation
Affected Vendors
- IBM Corporation