CVE-2024-41738

IBM TXSeries for Multiplatforms 10.1 could allow an attacker to obtain sensitive information from the query string of an HTTP GET method to process a request which could be obtained using man in the middle techniques.
References
Link Resource
https://www.ibm.com/support/pages/node/7174572 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:txseries_for_multiplatforms:10.1:*:*:*:*:*:*:*

History

14 Nov 2024, 20:51

Type Values Removed Values Added
CWE NVD-CWE-noinfo
Summary
  • (es) IBM TXSeries for Multiplatforms 10.1 podría permitir que un atacante obtenga información confidencial de la cadena de consulta de un método HTTP GET para procesar una solicitud que podría obtenerse utilizando técnicas de tipo man in the middle.
First Time Ibm
Ibm txseries For Multiplatforms
CPE cpe:2.3:a:ibm:txseries_for_multiplatforms:10.1:*:*:*:*:*:*:*
References () https://www.ibm.com/support/pages/node/7174572 - () https://www.ibm.com/support/pages/node/7174572 - Vendor Advisory

01 Nov 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-01 17:15

Updated : 2024-11-14 20:51


NVD link : CVE-2024-41738

Mitre link : CVE-2024-41738

CVE.ORG link : CVE-2024-41738


JSON object : View

Products Affected

ibm

  • txseries_for_multiplatforms
CWE
NVD-CWE-noinfo CWE-598

Use of GET Request Method With Sensitive Query Strings