CVE-2024-43187

CVSS 3.1 Score 5.9 of 10 (medium)

Details

Published Feb 4, 2025
CWE ID 319

Summary

CVE-2024-43187 refers to a vulnerability in IBM Security Verify Access Appliance and Container versions 10.0.0 through 10.0.8. This issue allows unauthorized actors to intercept and read sensitive or security-critical data transmitted in cleartext over an insecure communication channel. The data at risk includes authentication credentials, access tokens, and other confidential information. An attacker can exploit this vulnerability through man-in-the-middle attacks or by gaining access to the communication channel. Organizations using the affected versions are advised to apply the vendor-released patches or upgrades to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share