CVE-2024-49797

CVSS 3.1 Score 5.9 of 10 (medium)

Details

Published Feb 6, 2025
Updated: Feb 12, 2025
CWE ID 327

Summary

CVE-2024-49797 is a cybersecurity vulnerability affecting IBM ApplinX version 11.1. This issue arises due to an inadequately configured HTTP Strict Transport Security (HSTS), leading to a potential data leak. An attacker can exploit this weakness through man-in-the-middle techniques, gaining unauthorized access to sensitive information. By not properly enabling HSTS, IBM ApplinX exposes its users to the risk of data breaches. This vulnerability highlights the importance of secure communication protocols for protecting data.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share