First published: Thu Oct 12 2023(Updated: )
IBM App Connect Enterprise 12.0.1.0 through 12.0.8.0 contains an unspecified vulnerability that could allow a local privileged user to obtain sensitive information from API logs. IBM X-Force ID: 263833.
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM App Connect Enterprise | <=12.0.1.0 - 12.0.8.0 | |
IBM App Connect Enterprise | >=12.0.1.0<12.0.9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-40682.
The severity of CVE-2023-40682 is medium with a CVSS score of 4.4.
CVE-2023-40682 affects IBM App Connect Enterprise versions 12.0.1.0 through 12.0.8.0.
CVE-2023-40682 could allow a local privileged user to obtain sensitive information from API logs.
To fix CVE-2023-40682, you should apply the patch provided by IBM. More information can be found at: https://www.ibm.com/support/pages/node/6989903