PT-2019-16961 · Ibm · Ibm Api Connect

William Soderberg

·

Published

2019-04-15

·

Updated

2023-01-30

·

CVE-2019-4202

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM API Connect versions 5.0.0.0 through 5.0.8.6
Description The issue allows an attacker to perform command injection using a specially crafted request, potentially leading to arbitrary code execution on the server and complete system access.
Recommendations For versions 5.0.0.0 through 5.0.8.6, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2019-4202

Affected Products

Ibm Api Connect