PT-2026-5868 · Ibm · Ibm Concert

Published

2026-02-04

·

Updated

2026-02-04

·

CVE-2024-51451

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM Concert versions 1.0.0 through 2.1.0
Description IBM Concert is susceptible to HTTP header injection due to inadequate validation of the HOST headers. This issue could enable an attacker to perform various attacks against the system, including cross-site scripting, cache poisoning, and session hijacking.
Recommendations IBM Concert versions prior to 2.1.1 should be updated.

Fix

Weakness Enumeration

Related Identifiers

CVE-2024-51451

Affected Products

Ibm Concert