4.3
CVE-2024-45654
- EPSS 0.11%
- Veröffentlicht 19.01.2025 03:15:07
- Zuletzt bearbeitet 16.07.2025 00:45:27
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
IBM Security ReaQta improper input validation
IBM Security ReaQta 3.12 could allow an authenticated user to perform unauthorized actions due to reliance on untrusted inputs.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Security Qradar Edr Version >= 3.12 < 3.12.13
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.11% | 0.297 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@us.ibm.com | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
|
CWE-807 Reliance on Untrusted Inputs in a Security Decision
The product uses a protection mechanism that relies on the existence or values of an input, but the input can be modified by an untrusted actor in a way that bypasses the protection mechanism.