CVE-2024-41768CWE-544

IBM Engineering Lifecycle Optimization - Publishing unhandled SLL exception

Medium · published January 4, 2025

CVSS v3.1
6.5
EPSS
0%
Percentile
34.2
In the wild
Unconfirmed
What it is

IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 could allow a remote attacker to cause an unhandled SSL exception which could leave the connection in an unexpected or insecure state.

The record
Technical detail
CVSS v3.1
6.5 · MEDIUM
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L
CVSS v4.0
Not supplied
EPSS
0.00409 · 34.2th percentile
Weakness
CWE-544 · Missing Standardized Error Handling Mechanism
Published
2025-01-04T14:26Z
EPSS history
Timeline
  • 04 JAN 14:26Z
    IBM Engineering Lifecycle Optimization - Publishing unhandled SLL exception
    cvelistv5