CVE-2024-56474

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Apr 2, 2025
Updated: Apr 7, 2025
CWE ID 352

Summary

CVE-2024-56474 is a newly disclosed vulnerability that affects IBM TXSeries for Multiplatforms versions 9.1 and 11.1. This security issue enables cross-site request forgery (CSRF), allowing attackers to carry out unauthorized actions on vulnerable websites by exploiting the trust that the site has in the user making the request. Successful attacks could potentially result in serious consequences, including data breaches or unauthorized system changes. Attackers can execute these malicious activities by tricking users into visiting a specially crafted webpage. IBM urges users to apply the available patches as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • IBM TXSeries for Multiplatforms

Affected Vendors

  • IBM Corporation