Vulnerability Description
IBM Watson Query on Cloud Pak for Data 1.8, 2.0, 2.1, 2.2 and IBM Db2 Big SQL on Cloud Pak for Data 7.3, 7.4, 7.5, and 7.6 could allow an authenticated user to obtain sensitive information due to insufficient session expiration.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Big Sql | 7.3 |
| Ibm | Watson Query With Cloud Pak For Data | 1.8 |
Related Weaknesses (CWE)
References
- https://www.ibm.com/support/pages/node/7168703Vendor Advisory
- https://www.ibm.com/support/pages/node/7176947Vendor Advisory
FAQ
What is CVE-2024-35160?
CVE-2024-35160 is a vulnerability with a CVSS score of 4.3 (MEDIUM). IBM Watson Query on Cloud Pak for Data 1.8, 2.0, 2.1, 2.2 and IBM Db2 Big SQL on Cloud Pak for Data 7.3, 7.4, 7.5, and 7.6 could allow an authenticated user to obtain sensitive information due to insu...
How severe is CVE-2024-35160?
CVE-2024-35160 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-35160?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Big Sql, Ibm Watson Query With Cloud Pak For Data.