CVE-2024-37382: Abinitio Authorization Gateway

High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.

An issue discovered in import host feature in Ab Initio Metadata Hub and Authorization Gateway before 4.3.1.1 allows attackers to run arbitrary code via crafted modification of server configuration.

Affected products

  • Abinitio Authorization Gateway: before 4.1.4.9 (fixed in 4.1.4.9); version 4.1.5.10 only; version 4.1.6.11 only; version 4.2.1.6 only; version 4.2.2.8 only; version 4.2.3.4 only; …
  • Abinitio Metadata Hub: before 4.1.4.9 (fixed in 4.1.4.9); version 4.1.5.10 only; version 4.1.6.11 only; version 4.2.1.6 only; version 4.2.2.8 only; version 4.2.3.4 only; …

Published 2024-08-08. Last modified 2026-06-17.