CVE-2024-45744 describes an insecure credential storage vulnerability in TopQuadrant TopBraid EDG, affecting at least version 7.1.3. An authenticated attacker with file system access can read edg-setup.properties to obtain the secret needed to decrypt external passwords stored in edg-vault.properties. This vulnerability has a CVSS score of 4.3 (MEDIUM), indicating a low impact on confidentiality and requiring authenticated access and low attack complexity. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
7.1.3CPE matchmatch criteria | cpe:2.3:a:topquadrant:topbraid_edg:7.1.3:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.