CVE-2024-55912

Severity
5.9MEDIUM
EPSS
0.1%
top 71.05%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 2

Description

IBM Concert Software 1.0.0 through 1.0.5 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.2 | Impact: 3.6

Affected Packages2 packages

CVEListV5ibm/concert_software1.0.01.0.5
NVDibm/concert1.0.01.1.0

🔴Vulnerability Details

2
GHSA
GHSA-qcrf-63xx-3cw2: IBM Concert Software 12025-05-02
CVEList
IBM Concert Software information disclosure2025-05-02
CVE-2024-55912 (MEDIUM CVSS 5.9) | IBM Concert Software 1.0.0 through | cvebase.io