contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-43791 | IBM Security Verify Access Appliance 10.0.0 through 10.0.8 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7177447 |
|
Wed, 29 Jan 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ibm:security_verify_access:*:*:*:*:*:*:*:* |
Fri, 29 Nov 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 29 Nov 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Security Verify Access Appliance 10.0.0 through 10.0.8 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. | |
| Title | IBM Security Verify Access Appliance hard coded credentials | |
| First Time appeared |
Ibm
Ibm security Verify Access |
|
| Weaknesses | CWE-798 | |
| CPEs | cpe:2.3:a:ibm:security_verify_access:10.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access:10.0.8:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm security Verify Access |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2024-11-29T17:09:49.677Z
Reserved: 2024-10-20T13:40:24.084Z
Link: CVE-2024-49805
Updated: 2024-11-29T17:03:23.513Z
Status : Analyzed
Published: 2024-11-29T17:15:08.470
Modified: 2025-01-29T21:24:36.337
Link: CVE-2024-49805
No data.
OpenCVE Enrichment
No data.
EUVD