2025-01-25 15:03:46 +00:00
{
"id" : "CVE-2024-35111" ,
"sourceIdentifier" : "psirt@us.ibm.com" ,
"published" : "2025-01-25T14:15:28.747" ,
2025-03-04 19:03:50 +00:00
"lastModified" : "2025-03-04T16:58:06.783" ,
"vulnStatus" : "Undergoing Analysis" ,
2025-01-25 15:03:46 +00:00
"cveTags" : [ ] ,
"descriptions" : [
{
"lang" : "en" ,
"value" : "IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system."
2025-02-02 03:03:49 +00:00
} ,
{
"lang" : "es" ,
"value" : "IBM Control Center 6.2.1 y 6.3.1 podr\u00edan permitir que un atacante remoto obtenga informaci\u00f3n confidencial cuando se devuelve un mensaje de error t\u00e9cnico detallado en el navegador. Esta informaci\u00f3n podr\u00eda utilizarse en futuros ataques contra sistema."
2025-01-25 15:03:46 +00:00
}
] ,
"metrics" : {
"cvssMetricV31" : [
{
"source" : "psirt@us.ibm.com" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" ,
"baseScore" : 4.3 ,
"baseSeverity" : "MEDIUM" ,
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "LOW" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "LOW" ,
"integrityImpact" : "NONE" ,
"availabilityImpact" : "NONE"
} ,
"exploitabilityScore" : 2.8 ,
"impactScore" : 1.4
}
]
} ,
"weaknesses" : [
{
"source" : "psirt@us.ibm.com" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-209"
}
]
}
] ,
2025-03-04 19:03:50 +00:00
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ibm:control_center:6.2.1.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "86853A4E-905D-46A9-BF43-6D6117AA2442"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ibm:control_center:6.3.1.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5C510A28-7CFF-414B-A740-13A71CB97271"
}
]
}
]
}
] ,
2025-01-25 15:03:46 +00:00
"references" : [
{
"url" : "https://www.ibm.com/support/pages/node/7174806" ,
2025-03-04 19:03:50 +00:00
"source" : "psirt@us.ibm.com" ,
"tags" : [
"Vendor Advisory"
]
2025-01-25 15:03:46 +00:00
}
]
}