PT-2021-12222 · Ibm · Ibm Api Connect

Published

2021-01-05

·

Updated

2021-01-07

·

CVE-2020-4899

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions IBM API Connect versions 5.0.0.0 through 5.0.8.10
Description The issue is related to the transmission of sensitive information in plain text across the network, which could potentially lead to the leakage of sensitive information or data corruption.
Recommendations For versions 5.0.0.0 through 5.0.8.10, consider implementing encryption for sensitive information transmitted across the network to mitigate the risk of leakage or corruption. As a temporary workaround, restrict access to sensitive data until a more secure transmission method is implemented.

Fix

Cleartext Transmission of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-4899

Affected Products

Ibm Api Connect