CVE-2024-40682
MEDIUMDescription
IBM SmartCloud Analytics - Log Analysis 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, and 1.3.8.2 could allow a local user to cause a denial of service due to improper validation of specified type of input.
Is your site exposed to CVE-2024-40682?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| ibm | smartcloud_analytics_log_analysis |
| ibm | smartcloud_analytics_log_analysis |
| ibm | smartcloud_analytics_log_analysis |
| ibm | smartcloud_analytics_log_analysis |
| ibm | smartcloud_analytics_log_analysis |
| ibm | smartcloud_analytics_log_analysis |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-40682? +
How severe is CVE-2024-40682? +
What products are affected by CVE-2024-40682? +
How do I check if I'm vulnerable to CVE-2024-40682? +
Related Vulnerabilities
A denial-of-service vulnerability exists in the WebSocket API due to insufficient validation and handling of JSON-based requests. A low-privileged authenticated …
Improper Validation of Specified Type of Input vulnerability in OpenText™ Content Management (Extended ECM) allows Parameter Injection. A bad actor …
A security issue exists due to improper handling of CIP Class 32’s request when a module is inhibited on the …
A security issue exists due to improper handling of CIP Class 32’s request when a module is inhibited on the …
Synapse is an open source Matrix homeserver implementation. Lack of validation for device keys in Synapse before 1.138.3 and in …
Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series v3.08.01 ; MATRIX Series v3.08.01 allows …