CVE-2024-38320
MEDIUMDescription
IBM Storage Protect for Virtual Environments: Data Protection for VMware and Storage Protect Backup-Archive Client 8.1.0.0 through 8.1.23.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Is your site exposed to CVE-2024-38320?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| ibm | storage_protect_for_virtual_environments |
| linux | linux_kernel |
| microsoft | windows |
| ibm | storage_protect |
| apple | macos |
| hp | hp-ux |
| ibm | aix |
| linux | linux_kernel |
| microsoft | windows |
| oracle | solaris |
References
Frequently Asked Questions
What is CVE-2024-38320? +
How severe is CVE-2024-38320? +
What products are affected by CVE-2024-38320? +
How do I check if I'm vulnerable to CVE-2024-38320? +
Related Vulnerabilities
An Improper Authorization vulnerability was identified in the EOL OVA based connect component which is deployed for installation purposes in …
Vulnerability in Best Practical Solutions, LLC's Request Tracker prior to v5.0.8, where the Triple DES (3DES) cryptographic algorithm is used …
Polkadot Frontier is an Ethereum and EVM compatibility layer for Polkadot and Substrate. In versions prior to commit 36f70d1, the …
Padding oracle attack vulnerability in Oberon microsystem AG’s ocrypto library in all versions since 3.1.0 and prior to 3.9.2 allows …
Padding oracle attack vulnerability in Oberon microsystem AG’s Oberon PSA Crypto library in all versions since 1.0.0 and prior to …
Deck Mate 2's firmware update mechanism accepts packages without cryptographic signature verification, encrypts them with a single hard-coded AES key …