CVE-2024-41778

IBM Controller 11.0.0 through 11.0.1 and 11.1.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
References
Link Resource
https://www.ibm.com/support/pages/node/7184423 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:controller:11.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:controller:11.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:controller:11.1.0:*:*:*:*:*:*:*

History

08 Aug 2025, 19:31

Type Values Removed Values Added
References () https://www.ibm.com/support/pages/node/7184423 - () https://www.ibm.com/support/pages/node/7184423 - Vendor Advisory
Summary
  • (es) IBM Controller 11.0.0 a 11.0.1 y 11.1.0 no requiere que los usuarios tengan contraseñas seguras de forma predeterminada, lo que facilita que los atacantes comprometan las cuentas de usuario.
CPE cpe:2.3:a:ibm:controller:11.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:controller:11.1.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:controller:11.0.1:*:*:*:*:*:*:*
First Time Ibm controller
Ibm

01 Mar 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-01 15:15

Updated : 2025-08-08 19:31


NVD link : CVE-2024-41778

Mitre link : CVE-2024-41778

CVE.ORG link : CVE-2024-41778


JSON object : View

Products Affected

ibm

  • controller
CWE
CWE-521

Weak Password Requirements