cve/2024/CVE-2024-41787.md
2025-09-29 21:09:30 +02:00

18 lines
861 B
Markdown

### [CVE-2024-41787](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-41787)
![](https://img.shields.io/static/v1?label=Product&message=Engineering%20Requirements%20Management%20DOORS%20Next&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=7.0.2%2C%207.0.3%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-367%20Time-of-check%20Time-of-use%20(TOCTOU)%20Race%20Condition&color=brightgreen)
### Description
IBM Engineering Requirements Management DOORS Next 7.0.2 and 7.0.3 could allow a remote attacker to bypass security restrictions, caused by a race condition. By sending a specially crafted request, an attacker could exploit this vulnerability to remotely execute code.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds