CVE-2019-4402: High severity api connect cli plugins vulnerability
Published Aug 20, 2019
·Updated
IBM API Connect 2018.1 through 2018.4.1.6 developer portal could allow an unauthorized user to cause a denial of service via an unprotected API. IBM X-Force ID: 162263.
Affected Software
1 affected component
IBM API Connect>=2018.1.0<=2018.4.1.6
Remediation
Patch Available
Event History
Aug 20, 2019
CVE Published
via MITRE·06:25 PM
Data Sourced
via MITRE·06:25 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2019-4402.
2
What is the severity of CVE-2019-4402?
CVE-2019-4402 has a severity of high with a CVSS score of 7.5.
3
What is the affected software of CVE-2019-4402?
The affected software is IBM API Connect versions 2018.1 through 2018.4.1.6.
4
What is the impact of CVE-2019-4402?
CVE-2019-4402 could allow an unauthorized user to cause a denial of service via an unprotected API.
5
How can I fix CVE-2019-4402?
To fix CVE-2019-4402, upgrade to a version of IBM API Connect that is not affected by the vulnerability.