CVE-2024-28765
Awaiting Analysis Awaiting Analysis - Queue
IBM Security Directory Integrator Information Disclosure Vulnerability

Publication date: 2026-05-27

Last updated on: 2026-05-27

Assigner: IBM Corporation

Description
IBM SDI 7.2.0.0 through 7.2.0.14 and IBM Security Directory Integrator 10.0.0.0 through 10.0.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-05-27
Last Modified
2026-05-27
Generated
2026-05-27
EPSS Evaluated
N/A
NVD
EUVD
Affected Vendors & Products
Showing 2 associated CPEs
Vendor Product Version / Range
ibm security_directory_integrator From 7.2.0.0 (inc) to 7.2.0.14 (inc)
ibm security_directory_integrator From 10.0.0.0 (inc) to 10.0.0.2 (inc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-209 The product generates an error message that includes sensitive information about its environment, users, or associated data.
Attack-Flow Graph
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart