CVE Vulnerabilities

CVE-2024-45075

Use of Single-factor Authentication

Published: Sep 04, 2024 | Modified: Sep 06, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

IBM webMethods Integration 10.15 could allow an authenticated user to create scheduler tasks that would allow them to escalate their privileges to administrator due to missing authentication.

Weakness

The use of single-factor authentication can lead to unnecessary risk of compromise when compared with the benefits of a dual-factor authentication scheme.

Affected Software

Name Vendor Start Version End Version
Webmethods_integration Ibm 10.15 (including) 10.15 (including)

Potential Mitigations

References