CVE-2024-45674

IBM Security Verify Bridge Directory Sync 1.0.1 through 1.0.12, IBM Security Verify Gateway for Windows Login 1.0.1 through 1.0.10, and IBM Security Verify Gateway for Radius 1.0.1 through 1.0.11 stores potentially sensitive information in log files that could be read by a local user.
References
Link Resource
https://www.ibm.com/support/pages/node/7183801 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:security_verify_bridge_directory_sync:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_verify_gateway_for_radius:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_verify_gateway_for_windows_login:*:*:*:*:*:*:*:*

History

18 Aug 2025, 18:24

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:security_verify_gateway_for_radius:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_verify_bridge_directory_sync:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_verify_gateway_for_windows_login:*:*:*:*:*:*:*:*
Summary
  • (es) IBM Security Verify Bridge Directory Sync 1.0.1 a 1.0.12, IBM Security Verify Gateway for Windows Login 1.0.1 a 1.0.10 e IBM Security Verify Gateway for Radius 1.0.1 a 1.0.11 almacenan información potencialmente confidencial en archivos de registro que un usuario local podría leer.
References () https://www.ibm.com/support/pages/node/7183801 - () https://www.ibm.com/support/pages/node/7183801 - Vendor Advisory
First Time Ibm security Verify Bridge Directory Sync
Ibm
Ibm security Verify Gateway For Radius
Ibm security Verify Gateway For Windows Login

22 Feb 2025, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-22 00:15

Updated : 2025-08-18 18:24


NVD link : CVE-2024-45674

Mitre link : CVE-2024-45674

CVE.ORG link : CVE-2024-45674


JSON object : View

Products Affected

ibm

  • security_verify_bridge_directory_sync
  • security_verify_gateway_for_radius
  • security_verify_gateway_for_windows_login
CWE
CWE-532

Insertion of Sensitive Information into Log File