CVE-2019-4600: Medium severity ibm api connect vulnerability
IBM API Connect could reveal sensitive information to an attacker using a specially crafted HTTP request.
Other sources
IBM API Connect version V5.0.0.0 through 5.0.8.7 could reveal sensitive information to an attacker using a specially crafted HTTP request. IBM X-Force ID: 167883.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-4600?
The severity of CVE-2019-4600 is medium with a CVSS score of 5.3.
What is IBM API Connect version affected by CVE-2019-4600?
IBM API Connect version V5.0.0.0 through 5.0.8.7 is affected by CVE-2019-4600.
How can CVE-2019-4600 be exploited?
CVE-2019-4600 can be exploited by an attacker using a specially crafted HTTP request.
How can I fix CVE-2019-4600?
To fix CVE-2019-4600, update IBM API Connect to a version higher than 5.0.8.7.
Where can I find more information about CVE-2019-4600?
More information about CVE-2019-4600 can be found on the IBM X-Force ID page (https://exchange.xforce.ibmcloud.com/vulnerabilities/167883) or the IBM support page (https://www.ibm.com/support/pages/node/1079127).