PT-2020-18007 · Ibm · Ibm Api Connect

Published

2020-09-03

·

Updated

2020-09-10

·

CVE-2020-4337

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions IBM API Connect versions 2018.4.1.0 through 2018.4.1.12
Description The issue allows an attacker to launch phishing attacks by tricking the server into generating user registration emails that contain malicious URLs.
Recommendations For versions 2018.4.1.0 through 2018.4.1.12, update to a version that contains a fix for this issue to prevent phishing attacks.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-4337

Affected Products

Ibm Api Connect