CVE-2024-56464
LOWDescription
IBM QRadar SIEM 7.5 - 7.5.0 UP14 IF01 is affected by an information disclosure vulnerability involving exposure of directory information. IBM has addressed this vulnerability in the latest update.
Is your site exposed to CVE-2024-56464?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
| ibm | qradar_security_information_and_event_manager |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-56464? +
How severe is CVE-2024-56464? +
What products are affected by CVE-2024-56464? +
How do I check if I'm vulnerable to CVE-2024-56464? +
Related Vulnerabilities
Grandstream Networks GXP1628 <=1.0.4.130 is vulnerable to Incorrect Access Control. The device is configured with directory listing enabled, allowing unauthorized …
OpenBMCS 2.4 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive files by exploiting directory listing functionality. …
SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive log files. Attackers can directly …
Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability. An unauthenticated attacker with remote access …
A Site-wide directory listing vulnerability in /fm in actidata actiNAS SL 2U-8 RDX 3.2.03-SP1 allows remote attackers to list the …
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Unauthenticated directory listing can occur: the …