PT-2025-1368 · Ibm · Ibm App Connect Enterprise Certified Container

Published

2025-01-29

·

Updated

2025-08-13

·

CVE-2022-43916

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions IBM App Connect Enterprise Certified Container versions 7.1 through 12.7
Description The issue concerns the IBM App Connect Enterprise Certified Container, where Pods used for internal infrastructure do not restrict network egress. This could potentially allow unauthorized access or data leakage.
Recommendations For IBM App Connect Enterprise Certified Container versions 7.1 through 12.7, restrict network egress for Pods used for internal infrastructure to minimize the risk of exploitation. Consider configuring network policies to limit outgoing traffic from these Pods.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

BDU:2025-11361
CVE-2022-43916

Affected Products

Ibm App Connect Enterprise Certified Container