CVE-2024-22347
גבוהה 7.5
תיאור (מקור, אנגלית)
IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
מדדים
- CVSS 3.1
-
7.5 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-30/7/2026
- CWE
- CWE-327
מוצרים מושפעים
hcltech: devops velocity; ibm: urbancode velocity
קישורים
- https://www.ibm.com/support/pages/node/7172750 Vendor Advisory