CVE-2024-43196: IBM OpenPages data manipulation
IBM OpenPages application could allow an authenticated user to manipulate data in the Questionnaires application allowing the user to spoof other users' responses.
Other sources
IBM OpenPages with Watson 8.3 and 9.0
application could allow an authenticated user to manipulate data in the Questionnaires application allowing the user to spoof other users' responses.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43196?
CVE-2024-43196 is considered a high severity vulnerability due to its potential to allow authenticated users to manipulate data.
How do I fix CVE-2024-43196?
To fix CVE-2024-43196, you should apply the latest patch provided by IBM for OpenPages version 9.0 or OpenPages with Watson version 8.3.
Who is affected by CVE-2024-43196?
CVE-2024-43196 affects users of IBM OpenPages and IBM OpenPages with Watson applications up to versions 9.0 and 8.3 respectively.
What type of attack does CVE-2024-43196 enable?
CVE-2024-43196 enables authenticated users to spoof other users' responses within the Questionnaires application.
Is user authentication a factor in exploiting CVE-2024-43196?
Yes, this vulnerability can only be exploited by authenticated users within the affected applications.