Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Soar
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-45670 1 Ibm 1 Soar 2024-11-16 N/A 8.1 HIGH
IBM Security SOAR 51.0.1.0 and earlier contains a mechanism for users to recover or change their passwords without knowing the original password, but the user account must be compromised prior to the weak recovery mechanism.
CVE-2021-29785 2 Ibm, Linux 2 Soar, Linux Kernel 2024-02-04 4.3 MEDIUM 5.9 MEDIUM
IBM Security SOAR V42 and V43could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 203169.
CVE-2020-4635 2 Ibm, Redhat 2 Soar, Enterprise Linux 2024-02-04 5.0 MEDIUM 5.3 MEDIUM
IBM Resilient SOAR 40 and earlier could disclose sensitive information by allowing a user to enumerate usernames.