2024-05-09 17:00:35 +00:00
{
2024-11-23 14:00:30 +00:00
"data_version" : "4.0" ,
2024-05-09 17:00:35 +00:00
"data_type" : "CVE" ,
"data_format" : "MITRE" ,
"CVE_data_meta" : {
"ID" : "CVE-2024-35160" ,
2024-11-23 14:00:30 +00:00
"ASSIGNER" : "psirt@us.ibm.com" ,
"STATE" : "PUBLIC"
2024-05-09 17:00:35 +00:00
} ,
"description" : {
"description_data" : [
{
"lang" : "eng" ,
2024-11-23 14:00:30 +00:00
"value" : "IBM Watson Query on Cloud Pak for Data 1.8, 2.0, 2.1, 2.2\u00a0and IBM Db2 Big SQL on Cloud Pak for Data 7.3, 7.4, 7.5, and 7.6\u00a0could allow an authenticated user to obtain sensitive information due to insufficient session expiration."
}
]
} ,
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng" ,
"value" : "CWE-613 Insufficient Session Expiration" ,
"cweId" : "CWE-613"
}
]
}
]
} ,
"affects" : {
"vendor" : {
"vendor_data" : [
{
"vendor_name" : "IBM" ,
"product" : {
"product_data" : [
{
"product_name" : "Watson Query for Cloud Pak for Data" ,
"version" : {
"version_data" : [
{
"version_affected" : "=" ,
"version_value" : "1.8, 2.0, 2.1, 2.2"
}
]
}
} ,
{
"product_name" : "Db2 Big SQL on Cloud Pak for Data" ,
"version" : {
"version_data" : [
{
"version_affected" : "=" ,
"version_value" : "7.3, 7.4, 7.5, 7.6"
}
]
}
}
]
}
}
]
}
} ,
"references" : {
"reference_data" : [
{
"url" : "https://www.ibm.com/support/pages/node/7168703" ,
"refsource" : "MISC" ,
"name" : "https://www.ibm.com/support/pages/node/7168703"
} ,
{
"url" : "https://www.ibm.com/support/pages/node/7176947" ,
"refsource" : "MISC" ,
"name" : "https://www.ibm.com/support/pages/node/7176947"
}
]
} ,
"generator" : {
"engine" : "Vulnogram 0.2.0"
} ,
"source" : {
"discovery" : "UNKNOWN"
} ,
"impact" : {
"cvss" : [
{
"attackComplexity" : "LOW" ,
"attackVector" : "NETWORK" ,
"availabilityImpact" : "NONE" ,
"baseScore" : 4.3 ,
"baseSeverity" : "MEDIUM" ,
"confidentialityImpact" : "LOW" ,
"integrityImpact" : "NONE" ,
"privilegesRequired" : "LOW" ,
"scope" : "UNCHANGED" ,
"userInteraction" : "NONE" ,
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" ,
"version" : "3.1"
2024-05-09 17:00:35 +00:00
}
]
}
}