IBM SDI 7.2.0.0 through 7.2.0.14 and IBM Security Directory Integrator 10.0.0.0 through 10.0.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.

Project Subscriptions

Vendors Products
Security Directory Integrator Subscribe
Advisories

No advisories yet.

Fixes

Solution

IBM strongly encourages customers to update their systems promptly. Principal Product and Versions Fix Availability IBM Security Director Integrator 7.2.0.15 7.2.0-ISS-SDI-FP0015 https://www.ibm.com/support/fixcentral/swg/selectFixes IBM Security Verify Directory Integrator 10.0.0.3 IBM-SVDI-10.0.0.3 https://www.ibm.com/support/fixcentral/swg/selectFixes


Workaround

No workaround given by the vendor.

History

Wed, 27 May 2026 14:15:00 +0000

Type Values Removed Values Added
Description IBM SDI 7.2.0.0 through 7.2.0.14 and IBM Security Directory Integrator 10.0.0.0 through 10.0.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
Title Security vulnerability was found in IBM Security Directory Integrator
First Time appeared Ibm
Ibm sdi
Ibm security Directory Integrator
Weaknesses CWE-209
CPEs cpe:2.3:a:ibm:sdi:7.2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sdi:7.2.0.14:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_directory_integrator:10.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_directory_integrator:10.0.0.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm sdi
Ibm security Directory Integrator
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-05-27T13:51:19.302Z

Reserved: 2024-03-10T12:22:43.138Z

Link: CVE-2024-28765

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-05-27T14:16:40.600

Modified: 2026-05-27T14:53:51.833

Link: CVE-2024-28765

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-05-27T15:30:27Z

Weaknesses