CVE-2018-1548: Infoleak
Published Jul 9, 2018
·Updated
IBM API Connect 2018.1.0.0, 2018.2.1, 2018.2.2, 2018.2.3, and 2018.2.4 contains a vulnerability that could allow an authenticated user to obtain sensitive information. IBM X-Force ID: 142657.
Affected Software
1 affected component
IBM API Connect>=2018.1.0.0<=2018.2.4
Event History
Jul 9, 2018
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-1548?
The severity of CVE-2018-1548 is categorized as high due to its potential to expose sensitive information.
2
How do I fix CVE-2018-1548?
To fix CVE-2018-1548, users should upgrade to a fixed version of IBM API Connect that is not vulnerable.
3
What versions of IBM API Connect are affected by CVE-2018-1548?
CVE-2018-1548 affects IBM API Connect versions 2018.1.0.0 and 2018.2.x up to 2018.2.4.
4
Who can exploit CVE-2018-1548?
CVE-2018-1548 can be exploited by authenticated users who have access to the affected IBM API Connect installations.
5
What type of information could be exposed by CVE-2018-1548?
CVE-2018-1548 could allow attackers to obtain sensitive data that might be part of the application's configuration or user information.