216.73.217.22

CVE-2024-40685

· Published 04/02/2026 22:15 · Modified 05/02/2026 14:57

Labels: CVE-2024-40685 2026-02-04CVE-2024-40685CWE-352[email protected]

Essential information

Published
04/02/2026 22:15
Modified
05/02/2026 14:57
Author
Creator
CVSS
4.3 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

CVSS metrics

Description

IBM Operations Analytics – Log Analysis versions 1.3.5.0 through 1.3.8.3 and IBM SmartCloud Analytics – Log Analysis are vulnerable to a cross-site request forgery (CSRF) vulnerability that could allow an attacker to trick a trusted user into performing unauthorized actions.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
ibm / operations analytics log analysis cpe:2.3:a:ibm:operations_analytics_log_analysis:1.3.5.0-1.3.8.3:*:*:*:*:*:*:*
ibm / smartcloud analytics log analysis cpe:2.3:a:ibm:smartcloud_analytics_log_analysis:*:*:*:*:*:*:*:*

References