PT-2019-9917 · Ibm · Ibm Api Connect

Published

2019-01-29

·

Updated

2019-10-09

·

CVE-2018-1976

CVSS v3.1

4.9

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM API Connect versions 5.0.0.0 through 5.0.8.4
Description The issue allows a user with administrative privileges to obtain highly sensitive information via a REST API, resulting in sensitive information disclosure.
Recommendations For versions 5.0.0.0 through 5.0.8.4, consider restricting access to the REST API to minimize the risk of exploitation until a fix is available.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-1976

Affected Products

Ibm Api Connect