Vulnerabilities > CVE-2024-39739 - Server-Side Request Forgery (SSRF) vulnerability in IBM Datacap and Datacap Navigator

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
LOW
Availability impact
NONE
network
low complexity
ibm
CWE-918

Summary

IBM Datacap Navigator 9.1.5, 9.1.6, 9.1.7, 9.1.8, and 9.1.9 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 296008.

Vulnerable Configurations

Part Description Count
Application
Ibm
6

Common Weakness Enumeration (CWE)