Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-41297 | IBM webMethods Integration 10.15 could allow an authenticated user to create scheduler tasks that would allow them to escalate their privileges to administrator due to missing authentication. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7167245 |
|
Mon, 29 Sep 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-308 |
Mon, 29 Sep 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-306 |
Fri, 06 Sep 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm
Ibm webmethods Integration |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:ibm:webmethods_integration:10.15:*:*:*:*:*:*:* | |
| Vendors & Products |
Ibm
Ibm webmethods Integration |
Wed, 04 Sep 2024 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 04 Sep 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM webMethods Integration 10.15 could allow an authenticated user to create scheduler tasks that would allow them to escalate their privileges to administrator due to missing authentication. | |
| Title | IBM webMethods Integration privilege escalation | |
| First Time appeared |
Softwareag
Softwareag webmethods |
|
| Weaknesses | CWE-308 | |
| CPEs | cpe:2.3:a:softwareag:webmethods:10.15:*:*:*:*:*:*:* | |
| Vendors & Products |
Softwareag
Softwareag webmethods |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-09-29T17:52:58.134Z
Reserved: 2024-08-21T19:10:49.905Z
Link: CVE-2024-45075
Updated: 2024-09-04T16:18:38.269Z
Status : Modified
Published: 2024-09-04T16:15:08.357
Modified: 2025-09-29T18:15:30.673
Link: CVE-2024-45075
No data.
OpenCVE Enrichment
No data.
EUVD