First published: Wed Aug 25 2021(Updated: )
IBM API Connect 5.0.0.0 through 5.0.8.11 could allow a user to potentially inject code due to unsanitized user input. IBM X-Force ID: 202774.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM API Connect | >=5.0.0.0<=5.0.8.11 | |
<=IBM API Connect V5.0.0.0-5.0.8.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-29772 is a vulnerability in IBM API Connect that could allow a user to potentially inject code due to unsanitized user input.
The severity of CVE-2021-29772 is critical with a CVSS score of 9.8.
CVE-2021-29772 affects IBM API Connect versions 5.0.0.0 through 5.0.8.11.
A user can potentially exploit CVE-2021-29772 by injecting malicious code through unsanitized user input in IBM API Connect.
Yes, IBM has provided a fix for CVE-2021-29772. Please refer to the official IBM support page for more details.