← Back

CVE-2024-39744

nvd nist
Published: Aug 22, 2024Modified: Aug 23, 2024

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.

Affected (4)

1 product
Configuration A
4 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Ibm
Version 6.0
Version 6.1.0
Version 6.2.0
Version 6.3.0
Running on/withPlatform Versions
Ibm
Aix
All versions
Linux
Linux Kernel
All versions
Microsoft
Windows
All versions

References (2)

Source: psirt@us.ibm.com
VDB EntryVendor Advisory
Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.