IBM Watson Query on Cloud Pak for Data 4.0.0 through 4.0.9, 4.5.0 through 4.5.3, 4.6.0 through 4.6.6, 4.7.0 through 4.7.4, and 4.8.0 through 4.8.7 could allow unauthorized data access from a remote data source object due to improper privilege management.
History

Fri, 05 Sep 2025 17:30:00 +0000

Type Values Removed Values Added
First Time appeared Ibm watson Query With Cloud Pak For Data
Weaknesses NVD-CWE-Other
CPEs cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data:*:*:*:*:*:*:*:*
Vendors & Products Ibm watson Query With Cloud Pak For Data

Fri, 15 Aug 2025 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Ibm
Ibm watson Query With Cloud Pak For Data As A Service
CPEs cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:4.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:4.0.9:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:4.5.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:4.5.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:4.6.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:4.6.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:4.7.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:4.7.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:4.8.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:watson_query_with_cloud_pak_for_data_as_a_service:4.8.7:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm watson Query With Cloud Pak For Data As A Service

Sat, 22 Feb 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sat, 22 Feb 2025 01:00:00 +0000

Type Values Removed Values Added
Description IBM Watson Query on Cloud Pak for Data 4.0.0 through 4.0.9, 4.5.0 through 4.5.3, 4.6.0 through 4.6.6, 4.7.0 through 4.7.4, and 4.8.0 through 4.8.7 could allow unauthorized data access from a remote data source object due to improper privilege management.
Title IBM Watson Query on Cloud Pak for Data information disclosure
Weaknesses CWE-269
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2025-02-22T00:38:24.208Z

Updated: 2025-08-15T15:17:44.158Z

Reserved: 2024-01-08T23:42:17.267Z

Link: CVE-2024-22341

cve-icon Vulnrichment

Updated: 2025-02-22T15:31:41.615Z

cve-icon NVD

Status : Analyzed

Published: 2025-02-22T01:15:10.507

Modified: 2025-09-05T17:18:50.480

Link: CVE-2024-22341

cve-icon Redhat

No data.