CVE-2024-49340
Ibm
CVE-2024-49340: Cross-site request forgery in IBM Watson Studio Local 1.2.3 allows attackers to perform unauthorized actions via a trusted user's session. While CVSS rates this at 8.8 (High), the SOCRadar Vulnerability Risk Score (SVRS) of 77 indicates substantial risk, nearing critical levels. This vulnerability enables attackers to execute malicious commands on behalf of legitimate users, potentially compromising sensitive data and system integrity. Even though the SVRS isn't above 80, organizations using IBM Watson Studio Local 1.2.3 should prioritize patching or mitigating this CWE-352 vulnerability. The presence of the 'In The Wild' tag further emphasizes the urgency, as it suggests active exploitation is possible. The vulnerability poses a significant risk to data confidentiality and system integrity. Applying the security patches will remediate the risk.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.