Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-41547 | IBM Security ReaQta 3.12 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7172212 |
|
Sat, 16 Nov 2024 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Linux
Linux linux Kernel |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:ibm:security_qradar_edr:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Linux
Linux linux Kernel |
Thu, 14 Nov 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 14 Nov 2024 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Security ReaQta 3.12 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. | |
| Title | IBM Security ReaQta information disclosure | |
| First Time appeared |
Ibm
Ibm security Qradar Edr |
|
| Weaknesses | CWE-942 | |
| CPEs | cpe:2.3:a:ibm:security_qradar_edr:3.12:*:*:*:*:*:*:* | |
| Vendors & Products |
Ibm
Ibm security Qradar Edr |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2024-11-14T14:04:51.919Z
Reserved: 2024-09-03T13:50:17.060Z
Link: CVE-2024-45642
Updated: 2024-11-14T14:04:48.622Z
Status : Analyzed
Published: 2024-11-14T12:15:18.323
Modified: 2024-11-16T00:13:06.017
Link: CVE-2024-45642
No data.
OpenCVE Enrichment
No data.
EUVD