CVE-2024-35117
IBM OpenPages with Watson information disclosure
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.4EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
11 Dec 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM OpenPages with Watson 9.0 may write sensitive information, under specific configurations, in clear text to the system tracing log files that could be obtained by a privileged user.
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N
Affected products
IBM · OpenPages with WatsonWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →