CVE-2024-41778: IBM Controller

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Controller 11.0.0 through 11.0.1 and 11.1.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.

Affected products

  • IBM Controller: version 11.0.0 only; version 11.0.1 only; version 11.1.0 only

Published 2025-03-01. Last modified 2026-06-17.