CVE-2024-35151

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
22/08/2024
Last modified:
23/08/2024

Description

IBM OpenPages with Watson 8.3 and 9.0 could allow authenticated users access to sensitive information through improper authorization controls on APIs.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:openpages_grc_platform:8.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:openpages_with_watson:9.0:*:*:*:*:*:*:*