Vulnerability Description
IBM Security SOAR 51.0.1.0 and earlier contains a mechanism for users to recover or change their passwords without knowing the original password, but the user account must be compromised prior to the weak recovery mechanism.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Soar | < 51.0.2.0 |
Related Weaknesses (CWE)
References
- https://www.ibm.com/support/pages/node/7172206Vendor Advisory
FAQ
What is CVE-2024-45670?
CVE-2024-45670 is a vulnerability with a CVSS score of 5.6 (MEDIUM). IBM Security SOAR 51.0.1.0 and earlier contains a mechanism for users to recover or change their passwords without knowing the original password, but the user account must be compromised prior to the ...
How severe is CVE-2024-45670?
CVE-2024-45670 has been rated MEDIUM with a CVSS base score of 5.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-45670?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Soar.