PublicCVE

CVE-2018-1469

CRITICAL9.8JSON exportCreate alert

Description

IBM API Connect Developer Portal 5.0.0.0 through 5.0.8.2 could allow an unauthenticated attacker to execute system commands using specially crafted HTTP requests. IBM X-Force ID: 140605.

CVSS breakdown

CVSS 3.0
Availability
High
Attack Complexity
Low
Attack Vector
Network
Confidentiality
High
Integrity
High
Privileges Required
None
Scope
Unchanged
User Interaction
None

Affected products