CVE-2019-4437: Infoleak
Published Aug 20, 2019
·Updated
IBM API Connect 2018.1 through 2018.4.1.6 may inadvertently leak sensitive details about internal servers and network via API swagger. IBM X-force ID: 162947.
Affected Software
1 affected component
IBM API Connect>=2018.1.0<=2018.4.1.6
Event History
Aug 20, 2019
CVE Published
via MITRE·07:30 PM
Data Sourced
via MITRE·07:30 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2019-4437.
2
What is the title of the vulnerability?
The title of the vulnerability is 'IBM API Connect 2018.1 through 2018.4.1.6 may inadvertently leak sensitive details about internal se…'
3
What is the severity of CVE-2019-4437?
The severity of CVE-2019-4437 is high.
4
How does IBM API Connect 2018.1 through 2018.4.1.6 inadvertently leak sensitive details?
IBM API Connect 2018.1 through 2018.4.1.6 may inadvertently leak sensitive details about internal servers and network via API swagger.
5
What is the IBM X-force ID for this vulnerability?
The IBM X-force ID for this vulnerability is 162947.
6
What is the affected software for this vulnerability?
The affected software is IBM API Connect 2018.1 through 2018.4.1.6.
7
Are there any patches available for this vulnerability?
Please refer to the IBM support page for information on available patches.