7.5
CVE-2026-12947
- EPSS 0.4%
- Veröffentlicht 30.07.2026 14:17:30
- Zuletzt bearbeitet 05.08.2026 14:50:01
- CVE-Watchlists
- Unerledigt
IBM App Connect Enterprise is vulnerable to Confidentiality disclosure on Discovery Connector nodes
IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 stores potentially sensitive information in log files that could be read by a local user.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ App Connect Enterprise Version >= 12.0.1.0 < 12.0.12.28
Ibm ≫ App Connect Enterprise Version >= 13.0.1.0 < 13.0.8.0
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.4% | 0.323 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| IBM | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
CWE-532 Insertion of Sensitive Information into Log File
The product writes sensitive information to a log file.
https://www.ibm.com/support/pages/node/7280894