Vulnerability Details CVE-2024-45670
IBM Security SOAR 51.0.1.0 and earlier contains a mechanism for users to recover or change their passwords without knowing the original password, but the user account must be compromised prior to the weak recovery mechanism.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 16.4%
CVSS Severity
CVSS v3 Score 5.6
Products affected by CVE-2024-45670
-
-
-
cpe:2.3:a:ibm:soar:51.0.0.0
-
cpe:2.3:a:ibm:soar:51.0.0.1
-
cpe:2.3:a:ibm:soar:51.0.0.2
-
cpe:2.3:a:ibm:soar:51.0.1.0
-
cpe:2.3:a:ibm:soar:51.0.1.1
-
cpe:2.3:a:ibm:soar:51.0.1.2