1.9
CVSSv2

CVE-2021-29906

Published: 08/10/2021 Updated: 15/10/2021
CVSS v2 Base Score: 1.9 | Impact Score: 2.9 | Exploitability Score: 3.4
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 169
Vector: AV:L/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, 1.3, 1.4 and 1.5 could disclose sensitive information to a local user when it is configured to use an IBM Cloud API key to connect to cloud-based connectors. IBM X-Force ID: 207630.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm app_connect_enterprise_certified_container 1.0.0

ibm app_connect_enterprise_certified_container 1.1.0

ibm app_connect_enterprise_certified_container 1.2.0

ibm app_connect_enterprise_certified_container 1.3.0

ibm app_connect_enterprise_certified_container 1.4.0

ibm app_connect_enterprise_certified_container 1.5.0