CVE-2024-9798
10.10.2024, 08:15
The health endpoint is public so everybody can see a list of all services. It is potentially valuable information for attackers.Enginsight
Vendor | Product | Version |
---|---|---|
linuxfoundation | zowe_api_mediation_layer | 2.18.0 < 𝑥 < 2.18.0 |
linuxfoundation | zowe_api_mediation_layer | 1.28.8 < 𝑥 < 1.28.8 |
linuxfoundation | zowe_api_mediation_layer | 1.0.0 ≤ 𝑥 < 1.28.8 |
linuxfoundation | zowe_api_mediation_layer | 2.0.0 ≤ 𝑥 < 2.18.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References