CVE-2024-35160 Information
Nov 25, 2024
cve
Description
IBM Watson Query on Cloud Pak for Data 1.8 2.0 2.1 2.2 and IBM Db2 Big SQL on Cloud Pak for Data 7.3 7.4 7.5 and 7.6 could allow an authenticated user to obtain sensitive information due to insufficient session expiration.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Reference
https://www.ibm.com/support/pages/node/7168703 https://www.ibm.com/support/pages/node/7176947
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
LOW
Availability Impact
NONE
Base Score
NONE
Base Severity
4.3
Share on: