First published: Tue Dec 17 2019(Updated: )
IBM API Connect 2018.4.1.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 168510.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM API Connect | =2018.4.1.7 | |
<=2018.4.1.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4609 is a vulnerability in IBM API Connect 2018.4.1.7 that uses weaker than expected cryptographic algorithms, allowing an attacker to decrypt sensitive information.
CVE-2019-4609 affects IBM API Connect 2018.4.1.7 by using insecure cryptographic algorithms that can be exploited to decrypt highly sensitive information.
CVE-2019-4609 has a severity of 7.5 (High).
IBM API Connect 2018.4.1.7 is affected by CVE-2019-4609.
To fix CVE-2019-4609, you should update to a version of IBM API Connect that uses stronger cryptographic algorithms and follow IBM's recommendations for protecting sensitive information.