CVE-2024-41787

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jan 10, 2025
CWE ID 367

Summary

CVE-2024-41787 is a newly disclosed vulnerability affecting IBM Engineering Requirements Management DOORS Next versions 7.0.2 and 7.0.3. This issue permits a remote attacker to circumvent security constraints due to a race condition. A carefully crafted request can be used by an attacker to exploit this vulnerability, resulting in the execution of arbitrary code. IBM urges users to apply the available patch as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share