Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.5

IBM Concert: Sensitive Data May Be Unprotected

CVE-2024-43178
Summary

IBM Concert uses weak encryption that could let attackers decrypt sensitive information. This means that if an attacker gets access to encrypted data, they might be able to read it. IBM has already fixed this issue, so make sure to update to the latest version.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
ibm concert > 1.0.0 , <= 2.2.0 –
Original title
IBM Concert 1.0.0 through 2.1.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Original description
IBM Concert 1.0.0 through 2.1.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
nvd CVSS3.1 7.5
Vulnerability type
CWE-327 Use of a Broken Cryptographic Algorithm
Published: 17 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026