First published: Mon Jul 09 2018(Updated: )
IBM API Connect 2018.1.0.0, 2018.2.1, 2018.2.2, 2018.2.3, and 2018.2.4 contains a vulnerability that could allow an authenticated user to obtain sensitive information. IBM X-Force ID: 142657.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
API Connect CLI Plugins | >=2018.1.0.0<=2018.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-1548 is categorized as high due to its potential to expose sensitive information.
To fix CVE-2018-1548, users should upgrade to a fixed version of IBM API Connect that is not vulnerable.
CVE-2018-1548 affects IBM API Connect versions 2018.1.0.0 and 2018.2.x up to 2018.2.4.
CVE-2018-1548 can be exploited by authenticated users who have access to the affected IBM API Connect installations.
CVE-2018-1548 could allow attackers to obtain sensitive data that might be part of the application's configuration or user information.