CVE Vulnerabilities

CVE-2024-45674

Insertion of Sensitive Information into Log File

Published: Feb 22, 2025 | Modified: Aug 18, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM Security Verify Bridge Directory Sync 1.0.1 through 1.0.12, IBM Security Verify Gateway for Windows Login 1.0.1 through 1.0.10, and IBM Security Verify Gateway for Radius 1.0.1 through 1.0.11

stores potentially sensitive information in log files that could be read by a local user.

Weakness

The product writes sensitive information to a log file.

Affected Software

NameVendorStart VersionEnd Version
Security_verify_bridge_directory_syncIbm1.0.1 (including)1.0.12 (including)
Security_verify_gateway_for_radiusIbm1.0.1 (including)1.0.11 (including)
Security_verify_gateway_for_windows_loginIbm1.0.1 (including)1.0.10 (including)

Potential Mitigations

References