VYPR

Soar

by IBM

CVEs (4)

  • CVE-2024-38319HigJun 22, 2024
    risk 0.49cvss 7.5epss 0.00

    IBM Security SOAR 51.0.2.0 could allow an authenticated user to execute malicious code loaded from a specially crafted script. IBM X-Force ID: 294830.

  • CVE-2021-29785MedJan 20, 2022
    risk 0.38cvss 5.9epss 0.01

    IBM Security SOAR V42 and V43could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.…

  • CVE-2024-45670MedNov 14, 2024
    risk 0.36cvss 5.6epss 0.00

    IBM Security SOAR 51.0.1.0 and earlier contains a mechanism for users to recover or change their passwords without knowing the original password, but the user account must be compromised prior to the weak recovery mechanism.

  • CVE-2020-4635MedMar 19, 2021
    risk 0.35cvss 5.3epss 0.01

    IBM Resilient SOAR 40 and earlier could disclose sensitive information by allowing a user to enumerate usernames.