Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2024-45670
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
IBM Security SOAR weak password recovery mechanism
Source: NVD (National Vulnerability Database)
Vulnerability Description
IBM Security SOAR 51.0.1.0 and earlier contains a mechanism for users to recover or change their passwords without knowing the original password, but the user account must be compromised prior to the weak recovery mechanism.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
Source: NVD (National Vulnerability Database)
Vulnerability Type
忘记口令恢复机制弱
Source: NVD (National Vulnerability Database)
Vulnerability Title
IBM Security SOAR 授权问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
IBM Security SOAR是美国国际商业机器(IBM)公司的一款产品,前身为 Resilient。旨在帮助您的安全团队自信地应对网络威胁、通过智能实现自动化并通过一致性进行协作。 IBM Security SOAR 51.0.1.0版本存在授权问题漏洞,该漏洞源于有一种机制可以在不知道原始密码的情况下重置密码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
IBMSecurity SOAR 51.0.1.0 cpe:2.3:a:ibm:soar:51.0.1.0:*:*:*:*:*:*:*
II. Public POCs for CVE-2024-45670
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2024-45670
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2024-45670

No comments yet


Leave a comment