Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-43683 | IBM App Connect Enterprise 12.0.1.0 through 12.0.7.0and 13.0.1.0 under certain configurations could allow a privileged user to obtain JMS credentials. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7175396 |
|
Wed, 13 Aug 2025 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm aix
Linux Linux linux Kernel Microsoft Microsoft windows |
|
| CPEs | cpe:2.3:a:ibm:app_connect_enterprise:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm aix
Linux Linux linux Kernel Microsoft Microsoft windows |
Tue, 21 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 18 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM App Connect Enterprise 12.0.1.0 through 12.0.7.0and 13.0.1.0 under certain configurations could allow a privileged user to obtain JMS credentials. | |
| Title | IBM App Connect Enterprise information disclosure | |
| First Time appeared |
Ibm
Ibm app Connect Enterprise |
|
| Weaknesses | CWE-1323 | |
| CPEs | cpe:2.3:a:ibm:app_connect_enterprise:12.0.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:app_connect_enterprise:12.0.7.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:app_connect_enterprise:13.0.1.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm app Connect Enterprise |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-01-21T20:59:39.138Z
Reserved: 2024-10-14T12:05:13.491Z
Link: CVE-2024-49338
Updated: 2025-01-21T20:59:27.335Z
Status : Analyzed
Published: 2025-01-18T15:15:07.433
Modified: 2025-08-13T00:24:57.833
Link: CVE-2024-49338
No data.
OpenCVE Enrichment
No data.
EUVD