PT-2025-2427 · Ibm · Ibm Control Center

Published

2025-01-25

·

Updated

2025-01-25

·

CVE-2024-35113

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: IBM Control Center versions 6.2.1 through 6.3.1
Description: The issue is related to the exposure of sensitive information through directory listing in the IBM Control Center system. This could allow a remote attacker to gain unauthorized access to protected data. An authenticated user may obtain sensitive information exposed through a directory listing.
Recommendations: For IBM Control Center version 6.2.1, consider restricting access to directory listings to minimize the risk of exploitation. For IBM Control Center version 6.3.1, consider restricting access to directory listings to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2025-01203
CVE-2024-35113

Affected Products

Ibm Control Center