CVE-2024-43187
CVSS 3.1 Score 5.9 of 10 (medium)
Details
Summary
CVE-2024-43187 refers to a vulnerability in IBM Security Verify Access Appliance and Container versions 10.0.0 through 10.0.8. This issue allows unauthorized actors to intercept and read sensitive or security-critical data transmitted in cleartext over an insecure communication channel. The data at risk includes authentication credentials, access tokens, and other confidential information. An attacker can exploit this vulnerability through man-in-the-middle attacks or by gaining access to the communication channel. Organizations using the affected versions are advised to apply the vendor-released patches or upgrades to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.