PT-2021-12222 · Ibm · Ibm Api Connect
Published
2021-01-05
·
Updated
2021-01-07
·
CVE-2020-4899
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
IBM API Connect versions 5.0.0.0 through 5.0.8.10
Description
The issue is related to the transmission of sensitive information in plain text across the network, which could potentially lead to the leakage of sensitive information or data corruption.
Recommendations
For versions 5.0.0.0 through 5.0.8.10, consider implementing encryption for sensitive information transmitted across the network to mitigate the risk of leakage or corruption. As a temporary workaround, restrict access to sensitive data until a more secure transmission method is implemented.
Fix
Cleartext Transmission of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Api Connect