CVE-2024-51477

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Mar 29, 2025
Updated: Apr 1, 2025
CWE ID 203

Summary

CVE-2024-51477 is a vulnerability affecting IBM InfoSphere Information Server 11.7. An authenticated user can potentially gain sensitive information by observing discrepancies in the response from the system. The issue may allow the unauthorized access to sensitive username information, posing a risk to data security and confidentiality. IBM has released a patch to address this vulnerability, and it is strongly recommended that users upgrade to the latest version to mitigate the risk. Failure to apply the patch may result in exposed sensitive information and potential unauthorized access.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • IBM Infosphere Information Server

Affected Vendors

  • IBM Corporation