IBM OpenPages 9.0 could allow an authenticated user to obtain sensitive information such as configurations that should only be available to privileged users.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-40713 IBM OpenPages 9.0 could allow an authenticated user to obtain sensitive information such as configurations that should only be available to privileged users.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 28 Aug 2025 07:30:00 +0900

Type Values Removed Values Added
Weaknesses CWE-276

Sat, 21 Jun 2025 03:45:00 +0900

Type Values Removed Values Added
First Time appeared Ibm openpages With Watson
Linux
Linux linux Kernel
Microsoft
Microsoft windows
CPEs cpe:2.3:a:ibm:openpages_with_watson:9.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Vendors & Products Ibm openpages With Watson
Linux
Linux linux Kernel
Microsoft
Microsoft windows

Fri, 10 Jan 2025 00:15:00 +0900

Type Values Removed Values Added
Weaknesses CWE-276
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 09 Jan 2025 23:15:00 +0900

Type Values Removed Values Added
Description IBM OpenPages 9.0 could allow an authenticated user to obtain sensitive information such as configurations that should only be available to privileged users.
Title IBM OpenPages information disclosure
First Time appeared Ibm
Ibm openpages
Weaknesses CWE-282
CPEs cpe:2.3:a:ibm:openpages:9.0:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm openpages
References
Metrics cvssV3_1

{'score': 5.4, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2025-08-27T21:33:04.586Z

Reserved: 2024-08-07T13:29:17.952Z

Link: CVE-2024-43176

cve-icon Vulnrichment

Updated: 2025-01-09T14:27:48.585Z

cve-icon NVD

Status : Analyzed

Published: 2025-01-09T14:15:26.770

Modified: 2025-09-29T22:26:24.387

Link: CVE-2024-43176

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses