PT-2025-2726 · Ibm · Ibm Security Verify Bridge
Published
2025-01-22
·
Updated
2025-08-14
·
CVE-2024-45672
CVSS v2.0
6.2
Medium
| Vector | AV:L/AC:L/Au:S/C:N/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
IBM Security Verify Bridge versions 1.0.0 through 1.0.15
Description:
The issue allows a local privileged user to overwrite files due to excessive privileges granted to the agent, which could also cause a denial of service.
Recommendations:
For versions 1.0.0 through 1.0.15, consider restricting the privileges granted to the agent to prevent file overwrites and minimize the risk of a denial of service. As a temporary workaround, review and adjust the agent's permissions to ensure they are in line with the principle of least privilege.
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Security Verify Bridge