5.3

CVE-2017-1328

IBM API Connect 5.0.0.0 - 5.0.6.0 could allow a remote attacker to bypass security restrictions of the api, caused by improper handling of security policy. By crafting a suitable request, an attacker could exploit this vulnerability to bypass security and use the vulnerable API. IBM X-Force ID: 126230.

Data is provided by the National Vulnerability Database (NVD)
IbmApi Connect Version5.0.0.0
IbmApi Connect Version5.0.0.1
IbmApi Connect Version5.0.1.0
IbmApi Connect Version5.0.2.0
IbmApi Connect Version5.0.3.0
IbmApi Connect Version5.0.4.0
IbmApi Connect Version5.0.5.0
IbmApi Connect Version5.0.6.0
IbmApi Connect Version5.0.6.1
IbmApi Connect Version5.0.6.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.28% 0.48
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.3 3.9 1.4
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N