5.5
CVSSv2

CVE-2015-0149

Published: 18/03/2015 Updated: 18/03/2015
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
VMScore: 490
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N

Vulnerability Summary

The developer portal in IBM API Management 3.0 prior to 3.0.4.1 does not properly restrict access to the public and private APIs, which allows remote authenticated users to obtain sensitive information or modify data via unspecified API calls.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm api management 3.0.4.0

ibm api management 3.0.3.0

ibm api management 3.0.2.1

ibm api management 3.0.2.0

ibm api management 3.0.0.0