CVE-2024-56342

IBM Verify Identity Access Digital Credentials 24.06 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
References
Link Resource
https://www.ibm.com/support/pages/node/7235710 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:verify_identity_access_digital_credentials:24.06:*:*:*:*:*:*:*

History

20 Aug 2025, 17:38

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:verify_identity_access_digital_credentials:24.06:*:*:*:*:*:*:*
References () https://www.ibm.com/support/pages/node/7235710 - () https://www.ibm.com/support/pages/node/7235710 - Vendor Advisory
First Time Ibm
Ibm verify Identity Access Digital Credentials

06 Jun 2025, 14:07

Type Values Removed Values Added
Summary
  • (es) IBM Verify Identity Access Digital Credentials 24.06 podrían permitir que un atacante remoto obtenga información confidencial al recibir un mensaje de error técnico detallado en el navegador. Esta información podría utilizarse en futuros ataques contra el sistema.

06 Jun 2025, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-06 02:15

Updated : 2025-08-20 17:38


NVD link : CVE-2024-56342

Mitre link : CVE-2024-56342

CVE.ORG link : CVE-2024-56342


JSON object : View

Products Affected

ibm

  • verify_identity_access_digital_credentials
CWE
CWE-209

Generation of Error Message Containing Sensitive Information