PT-2024-33477 · Ibm · Ibm Security Guardium

Mohamed Saleh

·

Published

2024-12-19

·

Updated

2025-11-05

·

CVE-2024-49336

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM Security Guardium version 11.5
Description The issue allows an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. This is due to a server-side request forgery (SSRF) vulnerability.
Recommendations For IBM Security Guardium version 11.5, as a temporary workaround, consider restricting access to sensitive network resources to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SSRF

Weakness Enumeration

Related Identifiers

CVE-2024-49336

Affected Products

Ibm Security Guardium